Stránka 1 z 2

prosim o kontrolu

Napsal: 08 srp 2011 18:54
od pedro85
nazdar, pls mozete mi skontrolovat log

diki moc
Pedro

Kód: Vybrat vše

 
Logfile of random's system information tool 1.09 (written by random/random)
Run by Pedro85 at 2011-08-08 19:52:23
Microsoft Windows 7 Home Premium  
System drive C: has 34 GB (34%) free of 100 GB
Total RAM: 4026 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:52:27, on 8. 8. 2011
Platform: Windows 7  (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\Pedro85.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://homepage.acer.com/rdr.aspx?b=ACAW&l=041b&m=aspire_5935&r=273605102645l0314z105t58i2x37q
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: @c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: Acer VCM.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O8 - Extra context menu item: Previesť cieľ odkazu do formátu Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Previesť do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Pridať cieľ odkazu do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Pridať do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - (no file)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14115 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
winlogon.exe
"c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
"C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 1180
"c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-55675da8-5b85-4f00-b7ed-524d950b4d1a -SystemEventPortName:HostProcess-755bab19-af53-4327-9446-4c5681657577 -IoCancelEventPortName:HostProcess-fbabd14c-00ee-4c99-a757-a244c35f5842 -NonStateChangingEventPortName:HostProcess-3d90b704-adc6-4687-a970-d281c91e67ef -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a72dc012-3947-4ae6-bff7-1403db509bf3
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe" 
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe" 
"C:\Windows\System32\igfxpers.exe" 
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" 
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Windows\PLFSetI.exe" 
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe" 
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe" 
"C:\Program Files (x86)\Launch Manager\LManager.exe" 
"C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe" 
"C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" 
"C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe" 
"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe" 
"C:\Program Files (x86)\Winamp\winampa.exe" 
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" 
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerEvent.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Windows\system32\wuauclt.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\Opera\opera.exe" 
"D:\programy\ochrana\RSITx64.exe" 
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2171934221-1264263934-1850883141-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2171934221-1264263934-1850883141-1000UA.job
C:\Windows\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
C:\Windows\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG9\avgssiea.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
uTorrentBar Toolbar - C:\Program Files (x86)\uTorrentBar\tbuTor.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll [2010-11-12 612616]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2010-03-25 1548096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - uTorrentBar Toolbar - C:\Program Files (x86)\uTorrentBar\tbuTor.dll [2010-12-09 3911776]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100 - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll [2010-11-12 612616]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-09-04 8098848]
"mwlDaemon"=C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2009-08-06 349480]
"Acer ePower Management"=C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [2009-08-19 496160]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-08-26 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-26 387608]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-08-26 365592]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-08-19 16336416]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-06-18 1808168]
"PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-30 200704]
"EPSON Stylus CX3200"=C:\Windows\system32\spool\DRIVERS\x64\3\E_S10IC2.EXE /P19 EPSON Stylus CX3200 /O6 USB001 /M Stylus CX3200 []
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 1436736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-08-18 1157128]
"EgisTecLiveUpdate"=C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [2009-08-04 199464]
"ArcadeDeluxeAgent"=C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-08-01 128296]
"PlayMovie"=C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-09-03 181480]
"Microsoft Default Manager"=C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [2010-05-10 439568]
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [2008-06-12 37232]
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2008-06-11 640376]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2010-12-07 74752]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-08-26 258560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-10 249344]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll

======File associations======

.inf - open - %SystemRoot%\SysWow64\NOTEPAD.EXE %1
.inf - install - %SystemRoot%\SysWow64\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\WScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\WScript.exe "%1" %*
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*

======List of files/folders created in the last 1 month======

2011-08-03 10:32:34 ----A---- C:\Windows\AS2 ver4.ini
2011-08-03 10:32:34 ----A---- C:\Windows\AS2 ver4.exe
2011-08-03 10:32:33 ----A---- C:\Windows\AS2 ver4.scr
2011-08-03 10:32:32 ----D---- C:\Windows\AS2 ver4 Uninstaller
2011-08-03 09:44:28 ----SHD---- C:\$RECYCLE.BIN
2011-08-02 20:08:13 ----D---- C:\Windows\temp
2011-08-02 20:03:30 ----D---- C:\ComboFix
2011-08-02 19:21:06 ----D---- C:\tmp
2011-08-02 19:18:43 ----D---- C:\Download
2011-07-29 11:26:33 ----A---- C:\Windows\SYSWOW64\tsccvid.dll
2011-07-29 11:11:31 ----D---- C:\ProgramData\Sony Ericsson
2011-07-29 11:11:31 ----D---- C:\Program Files (x86)\Sony Ericsson
2011-07-27 22:00:58 ----D---- C:\Program Files (x86)\Microsoft Security Client
2011-07-27 22:00:55 ----D---- C:\Program Files\Microsoft Security Client
2011-07-27 21:34:30 ----A---- C:\Windows\zip.exe
2011-07-27 21:34:30 ----A---- C:\Windows\SWSC.exe
2011-07-27 21:34:30 ----A---- C:\Windows\SWREG.exe
2011-07-27 21:34:30 ----A---- C:\Windows\sed.exe
2011-07-27 21:34:30 ----A---- C:\Windows\PEV.exe
2011-07-27 21:34:30 ----A---- C:\Windows\NIRCMD.exe
2011-07-27 21:34:30 ----A---- C:\Windows\MBR.exe
2011-07-27 21:34:30 ----A---- C:\Windows\grep.exe
2011-07-27 21:34:24 ----D---- C:\Windows\ERDNT
2011-07-27 21:34:04 ----D---- C:\Qoobox
2011-07-27 21:05:18 ----D---- C:\rsit
2011-07-27 21:05:18 ----D---- C:\Program Files\trend micro
2011-07-27 20:19:04 ----AD---- C:\Windows\rundll16.exe
2011-07-27 20:19:04 ----AD---- C:\Windows\logo1_.exe
2011-07-27 20:06:19 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2011-07-27 20:06:19 ----A---- C:\Windows\system32\wcncsvc.dll
2011-07-27 20:00:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-07-27 20:00:04 ----A---- C:\Windows\system32\mshtmled.dll
2011-07-27 20:00:03 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-07-27 20:00:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\jscript9.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\ieui.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\iertutil.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-07-27 20:00:02 ----A---- C:\Windows\system32\urlmon.dll
2011-07-27 20:00:02 ----A---- C:\Windows\system32\jscript.dll
2011-07-27 20:00:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-07-27 19:59:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-07-27 19:59:59 ----A---- C:\Windows\system32\mshtml.dll
2011-07-27 19:59:59 ----A---- C:\Windows\system32\ieframe.dll
2011-07-27 19:54:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-07-27 19:54:08 ----A---- C:\Windows\system32\drivers\afd.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-07-27 19:53:50 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-07-27 19:53:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-07-27 19:53:49 ----A---- C:\Windows\system32\kernel32.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\user.exe
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64win.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64cpu.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\winsrv.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\ntvdm64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\conhost.exe
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-27 19:53:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-07-27 19:53:46 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-27 19:53:38 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2011-07-27 19:53:38 ----A---- C:\Windows\SYSWOW64\explorer.exe
2011-07-27 19:53:38 ----A---- C:\Windows\system32\inetcomm.dll
2011-07-27 19:53:38 ----A---- C:\Windows\explorer.exe
2011-07-27 19:53:17 ----A---- C:\Windows\system32\win32k.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srv.sys
2011-07-27 19:53:16 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2011-07-27 19:53:16 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2011-07-27 19:53:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-07-27 19:53:16 ----A---- C:\Windows\system32\oleaut32.dll
2011-07-27 19:53:15 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2011-07-27 19:53:15 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-07-27 19:53:15 ----A---- C:\Windows\system32\d3d10_1.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\devobj.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2011-07-27 19:52:56 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-07-27 19:52:54 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-07-27 19:52:54 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\winhttp.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\WebClnt.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\upnp.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\msxml6.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\msxml3.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\wscsvc.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\wscapi.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\slwga.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\davclnt.dll
2011-07-27 19:50:36 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2011-07-27 19:50:35 ----A---- C:\Windows\system32\XpsPrint.dll
2011-07-27 19:11:40 ----RASH---- C:\Windows\SYSWOW64\mscat32V.dll
2011-07-27 16:07:31 ----D---- C:\ProgramData\YouTube Downloader
2011-07-27 16:07:27 ----D---- C:\Program Files (x86)\YouTube Downloader
2011-07-21 10:33:47 ----AD---- C:\Windows\VDLL.DLL
2011-07-21 10:33:47 ----AD---- C:\Windows\SYSWOW64\runouce.exe
2011-07-21 10:33:47 ----AD---- C:\Windows\RUNDL132.EXE
2011-07-21 10:33:47 ----AD---- C:\Windows\logo_1.exe
2011-07-21 10:25:34 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2011-07-21 10:25:33 ----A---- C:\Windows\SYSWOW64\msvcp80.dll
2011-07-21 10:25:32 ----A---- C:\Windows\SYSWOW64\eEmpty.exe
2011-07-21 10:25:25 ----D---- C:\ProgramData\MicroWorld
2011-07-21 09:58:29 ----D---- C:\ProgramData\Norton
2011-07-21 09:41:20 ----D---- C:\Program Files\CCleaner

======List of files/folders modified in the last 1 month======

2011-08-08 19:52:27 ----D---- C:\Windows\Prefetch
2011-08-08 19:18:54 ----D---- C:\Program Files (x86)\Counter-Strike 1.6 V40
2011-08-08 09:55:05 ----D---- C:\Windows\system32\config
2011-08-07 17:11:50 ----D---- C:\Users\Pedro85\AppData\Roaming\Winamp
2011-08-04 17:27:54 ----D---- C:\Users\Pedro85\AppData\Roaming\vlc
2011-08-04 17:18:30 ----D---- C:\Users\Pedro85\AppData\Roaming\Skype
2011-08-04 17:17:45 ----D---- C:\Users\Pedro85\AppData\Roaming\skypePM
2011-08-04 14:54:56 ----D---- C:\Program Files\bwinPoker
2011-08-03 20:11:59 ----RSD---- C:\Windows\Fonts
2011-08-03 10:32:35 ----D---- C:\Windows
2011-08-03 00:08:06 ----D---- C:\Users\Pedro85\AppData\Roaming\gtk-2.0
2011-08-02 20:08:18 ----A---- C:\Windows\system.ini
2011-08-02 20:06:08 ----D---- C:\Windows\SYSWOW64\drivers
2011-08-02 20:06:08 ----D---- C:\Windows\SysWOW64
2011-08-02 20:06:08 ----D---- C:\Windows\system32\drivers
2011-08-02 20:06:08 ----D---- C:\Windows\System32
2011-08-02 20:06:08 ----D---- C:\Windows\AppPatch
2011-08-02 20:06:06 ----D---- C:\Program Files\Common Files
2011-08-02 20:06:06 ----D---- C:\Program Files (x86)\Common Files
2011-08-02 19:51:41 ----D---- C:\Windows\system32\drivers\etc
2011-08-02 19:48:05 ----D---- C:\Windows\system32\Tasks
2011-08-02 19:48:04 ----D---- C:\Windows\Tasks
2011-08-02 19:29:10 ----RD---- C:\Program Files
2011-08-02 14:16:59 ----D---- C:\Program Files (x86)\ABBYY FineReader 10
2011-07-31 15:57:03 ----D---- C:\Windows\inf
2011-07-31 15:57:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-30 00:35:21 ----D---- C:\Windows\system32\catroot2
2011-07-29 16:42:56 ----D---- C:\Program Files\FreeRapid-0.85-build555
2011-07-29 11:11:31 ----RD---- C:\Program Files (x86)
2011-07-29 11:11:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-07-29 11:11:31 ----D---- C:\ProgramData
2011-07-28 18:32:53 ----SHD---- C:\Windows\Installer
2011-07-28 10:37:24 ----D---- C:\Users\Pedro85\AppData\Roaming\DAEMON Tools Lite
2011-07-28 10:22:41 ----D---- C:\Windows\Microsoft.NET
2011-07-28 10:22:34 ----RSD---- C:\Windows\assembly
2011-07-27 22:00:59 ----D---- C:\Windows\system32\catroot
2011-07-27 22:00:59 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2011-07-27 22:00:37 ----SD---- C:\Users\Pedro85\AppData\Roaming\Microsoft
2011-07-27 20:21:12 ----D---- C:\Windows\winsxs
2011-07-27 20:12:41 ----A---- C:\Windows\win.ini
2011-07-27 20:08:41 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-07-27 20:07:19 ----D---- C:\Program Files\Internet Explorer
2011-07-27 20:07:19 ----D---- C:\Program Files (x86)\Internet Explorer
2011-07-27 20:06:49 ----D---- C:\ProgramData\Microsoft Help
2011-07-27 20:03:19 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-07-27 20:02:30 ----HD---- C:\Windows\system32\GroupPolicy
2011-07-27 20:00:32 ----D---- C:\Windows\debug
2011-07-27 10:17:48 ----D---- C:\Windows\system32\DriverStore
2011-07-21 09:57:00 ----D---- C:\Users\Pedro85\AppData\Roaming\uTorrent
2011-07-21 09:56:45 ----D---- C:\Windows\Logs
2011-07-20 13:12:26 ----D---- C:\CENKROSplusData
2011-07-19 21:57:00 ----D---- C:\Windows\system32\NDF
2011-07-13 13:18:26 ----D---- C:\ProgramData\Skype Extras

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-05 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-05-18 834544]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 189440]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2009-06-02 22576]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2009-06-02 20016]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-02 60464]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2009-07-14 145920]
R3 DKbFltr;Dritek Keyboard Filter Driver (64-bit); C:\Windows\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608]
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2009-05-20 70656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-09-04 1995424]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 40832]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 84864]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-05 18432]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2009-08-26 83488]
R3 ROCKEYNT;Feitian ROCKEY4 Device Service; C:\Windows\system32\DRIVERS\Rockey4.sys [2010-11-21 36904]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-06-18 272432]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-05 16896]
S3 a84uc7vd;a84uc7vd; C:\Windows\system32\drivers\a84uc7vd.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 AVerAF15;AVerMedia BDA Digital Tuner; C:\Windows\System32\Drivers\AVerAF15.sys [2008-07-04 306688]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 enecirhid;ENE CIR HID Receiver; C:\Windows\system32\DRIVERS\enecirhid.sys [2009-05-19 14848]
S3 enecirhidma;ENE CIR HIDmini Filter; C:\Windows\system32\DRIVERS\enecirhidma.sys [2008-04-24 6656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-08-26 7345632]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 6952960]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2009-06-24 205472]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-10-10 109056]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;Sony Ericsson USB Device sa0101 Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-18 864032]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [2009-08-19 796192]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-08-28 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 12784]
R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2009-08-06 311592]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-08-19 382496]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-07-27 249136]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 288272]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-01 136176]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-05-18 1436424]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-12-16 651720]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-01 136176]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2011-06-29 155344]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-27 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

[/color]

Re: prosim o kontrolu

Napsal: 08 srp 2011 19:21
od chodnik74
Dobrý večer :welcome:
:???: V jste používal 2.8. Combofix?
:arrow: Odinstalujte Conduit Engine,Bing Bar,uTorrentBar Toolbar a všechny nepotřebné toolbary :)

:arrow: Spustíme si HijackThisObrázek

Kód: Vybrat vše

C:\Program Files\trend micro\Pedro85.exe
(Pokud nenajdeme nebo nemáme,tak stáhneme ZDE )
  • Dále klikneme na tlačítko Do a system scan only
  • Najdeme a označíme následující položky:

    Kód: Vybrat vše

    R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
    O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
    O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
    O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
    O3 - Toolbar: @c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
    O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
    O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
    O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
    O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
    O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
    O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
    
  • klikneme na položku Fix checked a potvrdíme tlačítkem Ano


:arrow: Otevřeme si Služby Obrázek
  • Stiskněte klávesovou kombinaci WIN+R( nebo start-spustit ),čímž se vám otevře okno pro zadání příkazu pro spuštění. Zkopírujte a vložte sem následujíci text: services.msc a dejte enter
  • Otevře se vám okno se službami vašeho pc,najděte následující služby,dvojklikem rozklikněte,klikneme na Zastavit a dále nastavte Typ spuštění:Zakázano

    Kód: Vybrat vše

    Nero BackItUp Scheduler 4.0
    NTI Backup Now 5 Scheduler Service
    Google Update Service (gupdate)
    Služba Google Update (gupdatem)
    Google Updater Service
    NTI Backup Now 5 Backup Service
    

:arrow: Smažte tyhle soubory:

Kód: Vybrat vše

C:\Windows\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
C:\Windows\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job

Údržba PC:

1)Čištění dočasných složek + neplatné registry
:arrow: ObrázekCcleaner
  • Stáhneme a nainstalujeme program
  • Spustíme program
  • ČISTIČ
    Windows zde necháme vše jak je (pokud používáme IE,tak odškrkneme jeho položky) a zaškrkneme položky Start Menu zástupci a Zástupci na ploše
    Aplikace - necháme jak je,ale pokud používáme nějaký prohlížeč (Google chrome,Firefox,Opera..) tak odškrkneme jeho položky
    >Stiskeneme tlačítko Analyzovat a poté Spustit Cleaner
  • Registry
    >Stiskneme tlačítko Hledej problémy,program začne hledat neplatné registry..podé zvolíme Opravit vybrané problémy..
    >Program se zeptá,zda chceme vytvořit zálohu registrů,zvolíme ano a uložíme si někde zálohu(kdyby byli po opravení registru s něčím problémy,tak zálohu obnovíme tak,že spustíme uloženou zálohu a potvrdíme ano),dále zvolíme Opravit všechny problémy a Zavřít
    >opakujte dokud nebude registr bez problémů
  • Program používáme 1x 14dní (záleží na používání pc,můžeme i jednou týdně)
2)Defragmentace disku
:arrow: ObrázekDefraggler
  • Stáhneme a nainstalujeme program
  • Spustíme program
  • Vybereme disk ( C:,D:..prostě který používáme)
  • Pokud je ve sloupci Fragmentace více než 5% dejte Defragmentovat
  • Proveďte se všemi používanými disky
  • Provádíme 1x za měsíc
3)Aktualizace programů
:arrow: ObrázekFileHippo.com Update Checker
  • Stáhneme a nainstalujeme program(Při instalaci odškrkneme volbu Run at Startup )
  • Spustíme program
  • Program vyhledá nainstalované programy v PC a zjistí dostupné aktualizace
  • Poté se vám otevře internetová stránka,kde budou nabídnuté aplikace k aktualizování
    >X Updates Detected..to jsou dostupné aktualizace..
    > klikneme na zelenou šipečku a stáhneme program,poté nainstalujeme jeho aktuální verzi
    > :!: X Beta Updates Detected..tyto aktualizace nestahujte,jedná se o betaverze,které jsou ve vývoji a jsou nestabilní :)
  • Provádíme 1x za 14 dní nebo jednou za měsíc
:arrow: Jak se chová PC :???: + nový RSIT

Re: prosim o kontrolu

Napsal: 08 srp 2011 21:14
od pedro85
Dobry vecer

- V jste používal 2.8. Combofix?
- Ano, bol pozuzity pred vyse tyzdnom, mal som problem s PC, (prestal pracovat antivirus, a nemohol som sa odstat do niekotrych programov, riesil som to tu na fore) Dane tema
---------------------------------------------------------------------
- toolbary co som nasiel, som odisntaloval
ale trebaz u Conduit Engine, mi vypisalo ze sa v PC nenchadza

Kód: Vybrat vše

O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
ostatne najdene a nalozene s nima podla navodu
---------------------------------------------------------------------
Služby, zastavene a zakazane

Kód: Vybrat vše

Nero BackItUp Scheduler 4.0
NTI Backup Now 5 Scheduler Service
Google Update Service (gupdate)
Služba Google Update (gupdatem)
Google Updater Service
NTI Backup Now 5 Backup Service
---------------------------------------------------------------------
subory zmazane

Kód: Vybrat vše

C:\Windows\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
C:\Windows\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
---------------------------------------------------------------------

Údržba PC:
1.)
ČISTIČ -> OK
Registry -> vsetko opraveno

2.) Defragmentace
analayzi preukazali, nepotrebu defragmetovat, 2 a 3 % fragmentace na diskoch, disk I mal 100%, ale ten je vyhradeny pre sysytem (kratkodoba pamet - na zrychlenie PC) - defragmentovan

3.) Programi aktualizovane, Skype, Daemon, uTorrent a nejake veci od microsoftu a Java
ale nic nejake dolezite
---------------------------------------------------------------------

Re: prosim o kontrolu

Napsal: 08 srp 2011 21:20
od pedro85
PC sa na prvy pohlad za OK, ale pri vyssom zatzaovani, je znat, ze stale nieco hapruje
pri programoch, ktore su viac narocne, je poznat, ze stale tam nieje uplne vsetko OK, trebaz ako pri AutoCad-e, alebo pri HD filmoch
taktiez, este aj pri hrach ako CS 1.6, alebo NFS

Da sa s tym nieco este robit ?

new log

Kód: Vybrat vše

Logfile of random's system information tool 1.09 (written by random/random)
Run by Pedro85 at 2011-08-08 22:16:11
Microsoft Windows 7 Home Premium  
System drive C: has 34 GB (34%) free of 100 GB
Total RAM: 4026 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:16:15, on 8. 8. 2011
Platform: Windows 7  (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\Pedro85.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://homepage.acer.com/rdr.aspx?b=ACAW&l=041b&m=aspire_5935&r=273605102645l0314z105t58i2x37q
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: Acer VCM.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O8 - Extra context menu item: Previesť cieľ odkazu do formátu Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Previesť do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Pridať cieľ odkazu do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Pridať do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - (no file)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12225 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 1968
"c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe"
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5818457f-5ce2-41c6-be0d-33b209fb4dbd -SystemEventPortName:HostProcess-43983af1-6dcf-424d-8139-5dddb53c5ecf -IoCancelEventPortName:HostProcess-16f60172-e259-4de2-a81a-a0f0a33620eb -NonStateChangingEventPortName:HostProcess-f0c4581e-cdea-48d9-9206-ff550782541a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:bf06d42d-2e22-4183-be5d-01835a35e712
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe" 
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe" 
"C:\Windows\System32\igfxpers.exe" 
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" 
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Windows\PLFSetI.exe" 
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe" 
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe" 
"C:\Program Files (x86)\Launch Manager\LManager.exe" 
"C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe" 
"C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" 
"C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe" 
"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe" 
"C:\Program Files (x86)\Winamp\winampa.exe" 
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" 
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerEvent.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" 
"C:\Program Files (x86)\Opera\opera.exe" 
"D:\programy\ochrana\RSITx64.exe" 
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2171934221-1264263934-1850883141-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2171934221-1264263934-1850883141-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-08-08 75656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2011-05-13 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-07-11 3821568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-04-01 1144072]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2010-03-25 1548096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-04-01 1144072]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-09-04 8098848]
"mwlDaemon"=C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2009-08-06 349480]
"Acer ePower Management"=C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [2009-08-19 496160]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-08-26 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-26 387608]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-08-26 365592]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-08-19 16336416]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-06-18 1808168]
"PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-30 200704]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 1436736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-08-18 1157128]
"EgisTecLiveUpdate"=C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [2009-08-04 199464]
"ArcadeDeluxeAgent"=C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-08-01 128296]
"PlayMovie"=C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-09-03 181480]
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [2008-06-12 37232]
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2008-06-11 640376]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2010-12-07 74752]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-08-26 258560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-10 249344]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll

======File associations======

.inf - open - %SystemRoot%\SysWow64\NOTEPAD.EXE %1
.inf - install - %SystemRoot%\SysWow64\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\WScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\WScript.exe "%1" %*
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*

======List of files/folders created in the last 1 month======

2011-08-08 22:03:25 ----A---- C:\Windows\system32\javaws.exe
2011-08-08 22:03:25 ----A---- C:\Windows\system32\javaw.exe
2011-08-08 22:03:25 ----A---- C:\Windows\system32\java.exe
2011-08-08 22:03:25 ----A---- C:\Windows\system32\deployJava1.dll
2011-08-08 22:03:18 ----D---- C:\Program Files\Java
2011-08-08 21:59:33 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2011-08-08 21:55:20 ----D---- C:\Windows\en
2011-08-08 21:52:19 ----D---- C:\Windows\sk
2011-08-08 21:46:34 ----SHD---- C:\Config.Msi
2011-08-08 21:45:49 ----D---- C:\Program Files (x86)\Microsoft
2011-08-08 21:37:40 ----D---- C:\Program Files (x86)\FileHippo.com
2011-08-08 21:15:15 ----D---- C:\Program Files\Defraggler
2011-08-03 10:32:34 ----A---- C:\Windows\AS2 ver4.ini
2011-08-03 10:32:34 ----A---- C:\Windows\AS2 ver4.exe
2011-08-03 10:32:33 ----A---- C:\Windows\AS2 ver4.scr
2011-08-03 10:32:32 ----D---- C:\Windows\AS2 ver4 Uninstaller
2011-08-03 09:44:28 ----SHD---- C:\$RECYCLE.BIN
2011-08-02 20:08:13 ----D---- C:\Windows\temp
2011-08-02 20:03:30 ----D---- C:\ComboFix
2011-08-02 19:21:06 ----D---- C:\tmp
2011-08-02 19:18:43 ----D---- C:\Download
2011-07-29 11:26:33 ----A---- C:\Windows\SYSWOW64\tsccvid.dll
2011-07-29 11:11:31 ----D---- C:\ProgramData\Sony Ericsson
2011-07-29 11:11:31 ----D---- C:\Program Files (x86)\Sony Ericsson
2011-07-27 22:00:58 ----D---- C:\Program Files (x86)\Microsoft Security Client
2011-07-27 22:00:55 ----D---- C:\Program Files\Microsoft Security Client
2011-07-27 21:34:30 ----A---- C:\Windows\zip.exe
2011-07-27 21:34:30 ----A---- C:\Windows\SWSC.exe
2011-07-27 21:34:30 ----A---- C:\Windows\SWREG.exe
2011-07-27 21:34:30 ----A---- C:\Windows\sed.exe
2011-07-27 21:34:30 ----A---- C:\Windows\PEV.exe
2011-07-27 21:34:30 ----A---- C:\Windows\NIRCMD.exe
2011-07-27 21:34:30 ----A---- C:\Windows\MBR.exe
2011-07-27 21:34:30 ----A---- C:\Windows\grep.exe
2011-07-27 21:34:24 ----D---- C:\Windows\ERDNT
2011-07-27 21:34:04 ----D---- C:\Qoobox
2011-07-27 21:05:18 ----D---- C:\rsit
2011-07-27 21:05:18 ----D---- C:\Program Files\trend micro
2011-07-27 20:19:04 ----AD---- C:\Windows\rundll16.exe
2011-07-27 20:19:04 ----AD---- C:\Windows\logo1_.exe
2011-07-27 20:06:19 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2011-07-27 20:06:19 ----A---- C:\Windows\system32\wcncsvc.dll
2011-07-27 20:00:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-07-27 20:00:04 ----A---- C:\Windows\system32\mshtmled.dll
2011-07-27 20:00:03 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-07-27 20:00:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\jscript9.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\ieui.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\iertutil.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-07-27 20:00:02 ----A---- C:\Windows\system32\urlmon.dll
2011-07-27 20:00:02 ----A---- C:\Windows\system32\jscript.dll
2011-07-27 20:00:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-07-27 19:59:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-07-27 19:59:59 ----A---- C:\Windows\system32\mshtml.dll
2011-07-27 19:59:59 ----A---- C:\Windows\system32\ieframe.dll
2011-07-27 19:54:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-07-27 19:54:08 ----A---- C:\Windows\system32\drivers\afd.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-07-27 19:53:50 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-07-27 19:53:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-07-27 19:53:49 ----A---- C:\Windows\system32\kernel32.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\user.exe
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64win.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64cpu.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\winsrv.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\ntvdm64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\conhost.exe
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-27 19:53:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-07-27 19:53:46 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-27 19:53:45 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-27 19:53:38 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2011-07-27 19:53:38 ----A---- C:\Windows\SYSWOW64\explorer.exe
2011-07-27 19:53:38 ----A---- C:\Windows\system32\inetcomm.dll
2011-07-27 19:53:38 ----A---- C:\Windows\explorer.exe
2011-07-27 19:53:17 ----A---- C:\Windows\system32\win32k.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srv.sys
2011-07-27 19:53:16 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2011-07-27 19:53:16 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2011-07-27 19:53:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-07-27 19:53:16 ----A---- C:\Windows\system32\oleaut32.dll
2011-07-27 19:53:15 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2011-07-27 19:53:15 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-07-27 19:53:15 ----A---- C:\Windows\system32\d3d10_1.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\devobj.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2011-07-27 19:52:56 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-07-27 19:52:54 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-07-27 19:52:54 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\winhttp.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\WebClnt.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\upnp.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\msxml6.dll
2011-07-27 19:52:54 ----A---- C:\Windows\system32\msxml3.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-07-27 19:52:53 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\wscsvc.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\wscapi.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\slwga.dll
2011-07-27 19:52:53 ----A---- C:\Windows\system32\davclnt.dll
2011-07-27 19:50:36 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2011-07-27 19:50:35 ----A---- C:\Windows\system32\XpsPrint.dll
2011-07-27 19:11:40 ----RASH---- C:\Windows\SYSWOW64\mscat32V.dll
2011-07-27 16:07:31 ----D---- C:\ProgramData\YouTube Downloader
2011-07-27 16:07:27 ----D---- C:\Program Files (x86)\YouTube Downloader
2011-07-21 10:33:47 ----AD---- C:\Windows\VDLL.DLL
2011-07-21 10:33:47 ----AD---- C:\Windows\SYSWOW64\runouce.exe
2011-07-21 10:33:47 ----AD---- C:\Windows\RUNDL132.EXE
2011-07-21 10:33:47 ----AD---- C:\Windows\logo_1.exe
2011-07-21 10:25:34 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2011-07-21 10:25:33 ----A---- C:\Windows\SYSWOW64\msvcp80.dll
2011-07-21 10:25:32 ----A---- C:\Windows\SYSWOW64\eEmpty.exe
2011-07-21 10:25:25 ----D---- C:\ProgramData\MicroWorld
2011-07-21 09:58:29 ----D---- C:\ProgramData\Norton
2011-07-21 09:41:20 ----D---- C:\Program Files\CCleaner

======List of files/folders modified in the last 1 month======

2011-08-08 22:11:24 ----D---- C:\Users\Pedro85\AppData\Roaming\Skype
2011-08-08 22:05:32 ----D---- C:\Windows\system32\config
2011-08-08 22:05:23 ----D---- C:\Windows
2011-08-08 22:05:05 ----RD---- C:\Program Files (x86)
2011-08-08 22:03:25 ----D---- C:\Windows\System32
2011-08-08 22:03:19 ----SHD---- C:\Windows\Installer
2011-08-08 22:03:18 ----RD---- C:\Program Files
2011-08-08 22:02:11 ----D---- C:\Windows\system32\Tasks
2011-08-08 22:02:10 ----RD---- C:\Program Files (x86)\Skype
2011-08-08 22:02:06 ----D---- C:\ProgramData\Skype
2011-08-08 22:02:04 ----D---- C:\Program Files (x86)\Common Files
2011-08-08 21:59:46 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2011-08-08 21:58:42 ----D---- C:\Users\Pedro85\AppData\Roaming\uTorrent
2011-08-08 21:58:25 ----D---- C:\Program Files (x86)\uTorrent
2011-08-08 21:49:10 ----D---- C:\Windows\SysWOW64
2011-08-08 21:47:03 ----D---- C:\Program Files (x86)\Windows Live
2011-08-08 21:46:43 ----D---- C:\Program Files\Windows Live
2011-08-08 21:46:37 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-08-08 21:45:54 ----SD---- C:\ProgramData\Microsoft
2011-08-08 21:45:01 ----D---- C:\Windows\Logs
2011-08-08 21:15:32 ----D---- C:\Windows\Prefetch
2011-08-08 21:07:12 ----D---- C:\Users\Pedro85\AppData\Roaming\Winamp
2011-08-08 21:07:12 ----D---- C:\Users\Pedro85\AppData\Roaming\DAEMON Tools Lite
2011-08-08 21:07:10 ----D---- C:\Windows\debug
2011-08-08 20:59:58 ----D---- C:\Windows\Tasks
2011-08-08 20:43:52 ----D---- C:\Users\Pedro85\AppData\Roaming\Mozilla
2011-08-08 19:18:54 ----D---- C:\Program Files (x86)\Counter-Strike 1.6 V40
2011-08-04 17:27:54 ----D---- C:\Users\Pedro85\AppData\Roaming\vlc
2011-08-04 17:17:45 ----D---- C:\Users\Pedro85\AppData\Roaming\skypePM
2011-08-04 14:54:56 ----D---- C:\Program Files\bwinPoker
2011-08-03 20:11:59 ----RSD---- C:\Windows\Fonts
2011-08-03 00:08:06 ----D---- C:\Users\Pedro85\AppData\Roaming\gtk-2.0
2011-08-02 20:08:18 ----A---- C:\Windows\system.ini
2011-08-02 20:06:08 ----D---- C:\Windows\SYSWOW64\drivers
2011-08-02 20:06:08 ----D---- C:\Windows\system32\drivers
2011-08-02 20:06:08 ----D---- C:\Windows\AppPatch
2011-08-02 20:06:06 ----D---- C:\Program Files\Common Files
2011-08-02 19:51:41 ----D---- C:\Windows\system32\drivers\etc
2011-08-02 14:16:59 ----D---- C:\Program Files (x86)\ABBYY FineReader 10
2011-07-31 15:57:03 ----D---- C:\Windows\inf
2011-07-31 15:57:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-30 00:35:21 ----D---- C:\Windows\system32\catroot2
2011-07-29 16:42:56 ----D---- C:\Program Files\FreeRapid-0.85-build555
2011-07-29 11:11:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-07-29 11:11:31 ----D---- C:\ProgramData
2011-07-28 10:22:41 ----D---- C:\Windows\Microsoft.NET
2011-07-28 10:22:34 ----RSD---- C:\Windows\assembly
2011-07-27 22:00:59 ----D---- C:\Windows\system32\catroot
2011-07-27 22:00:59 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2011-07-27 22:00:37 ----SD---- C:\Users\Pedro85\AppData\Roaming\Microsoft
2011-07-27 20:21:12 ----D---- C:\Windows\winsxs
2011-07-27 20:12:41 ----A---- C:\Windows\win.ini
2011-07-27 20:08:41 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-07-27 20:07:19 ----D---- C:\Program Files\Internet Explorer
2011-07-27 20:07:19 ----D---- C:\Program Files (x86)\Internet Explorer
2011-07-27 20:06:49 ----D---- C:\ProgramData\Microsoft Help
2011-07-27 20:02:30 ----HD---- C:\Windows\system32\GroupPolicy
2011-07-27 10:17:48 ----D---- C:\Windows\system32\DriverStore
2011-07-20 13:12:26 ----D---- C:\CENKROSplusData
2011-07-19 21:57:00 ----D---- C:\Windows\system32\NDF
2011-07-13 13:18:26 ----D---- C:\ProgramData\Skype Extras

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-05 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-08-08 526392]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 189440]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2009-06-02 22576]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2009-06-02 20016]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-02 60464]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2009-07-14 145920]
R3 DKbFltr;Dritek Keyboard Filter Driver (64-bit); C:\Windows\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608]
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2009-05-20 70656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-09-04 1995424]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 84864]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-05 18432]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2009-08-26 83488]
R3 ROCKEYNT;Feitian ROCKEY4 Device Service; C:\Windows\system32\DRIVERS\Rockey4.sys [2010-11-21 36904]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-06-18 272432]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-05 16896]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 AVerAF15;AVerMedia BDA Digital Tuner; C:\Windows\System32\Drivers\AVerAF15.sys [2008-07-04 306688]
S3 aw4be7gn;aw4be7gn; C:\Windows\system32\drivers\aw4be7gn.sys []
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 enecirhid;ENE CIR HID Receiver; C:\Windows\system32\DRIVERS\enecirhid.sys [2009-05-19 14848]
S3 enecirhidma;ENE CIR HIDmini Filter; C:\Windows\system32\DRIVERS\enecirhidma.sys [2008-04-24 6656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-08-26 7345632]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 40832]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 6952960]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2009-06-24 205472]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-10-10 109056]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;Sony Ericsson USB Device sa0101 Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-18 864032]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [2009-08-19 796192]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-08-28 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 12784]
R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2009-08-06 311592]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-08-19 382496]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-03-28 249648]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 288272]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-04-01 183560]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-05-18 1436424]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-12-16 651720]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-13 1492840]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2011-06-29 155344]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-27 1255736]
S4 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-01 136176]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-01 136176]
S4 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S4 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
S4 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
S4 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------

Re: prosim o kontrolu

Napsal: 09 srp 2011 15:26
od chodnik74
:arrow: Stále chybí SP 1
:arrow: Zkuste odinstalovat Bing Bar

:arrow: Otevřeme si Poznámkový blok Obrázek
  • (stiskneme klávesovou kombinaci WIN+R a napíšeme ,,notepad,, bez úvozovek a dáme enter)
  • Vložíme do něj následující script:

    Kód: Vybrat vše

    Windows Registry Editor Version 5.00
    
    [-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
    "{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
    "{47833539-D0C5-4125-9FA8-0819E2EAAC93}"=-
    "{8dcb7100-df86-4384-8842-8fa844297b3f}"=-
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "IAAnotif"=-
    "IgfxTray"=-
    "Persistence"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "DAEMON Tools Lite"=-
    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
    "EgisTecLiveUpdate"=-
    "ArcadeDeluxeAgent"=-
    "PlayMovie"=-
    "Adobe Acrobat Speed Launcher"=-
    "Acrobat Assistant 8.0"=-
    "WinampAgent"=-
    "SunJavaUpdateSched"=-
    
  • Soubor uložíme jako oprava.reg (při ukládání nastavte Uložit jako typ:Všechny soubory)
  • Poté tento soubor spustíme a potvrdíme :)

:arrow: Obrázek TFC
  • Stáhneme a spustíme program
  • Klikneme na Start a potvrdíme OK
  • Program začne uklízet,poté restartuje pc
  • po použití program smažte

a mrkneme i na teploty ;-)


:arrow: Stáhněte si program HWMonitor
-Nainstalujte a spuste a udělejte mi screen teplot :) pokud nevíte jak tak podle návodu : http://www.viry.cz/forum/viewtopic.php?f=11&t=14114

Re: prosim o kontrolu

Napsal: 09 srp 2011 21:04
od pedro85
FileHippo.com Update Checker

mi odkaz na SP1 neponukol ...skusam rucne stiahnut
ces win update, to tiez nejde .. zda sa mi z v minulosti som mal s tym probelm a neslo mi to ( pri instalacii, to vyhadzovalo chybu)
a preto to ani zataila nemam

Re: prosim o kontrolu

Napsal: 09 srp 2011 22:15
od pedro85
nazdar

takze, vsetko okrem toho SP1, som urobil
aktualaizacia SP1, mi nejde ani priamo zo stranky microsoftu. a to uz som skusal aj variantu, ze som mal naistalaovany ten predbezny sp1 ( na zakalde coho, by mi nesiel kompletny baliscke SP1) .. takze ja uz fakt neviem :D ( na XP, ale viste som s tym nemal problemy, ale tu sa s toho vysomarit je fakt umenie) :shock:

inak prtSc tych teplot
klikne sem

pri aktivnom CS, aleb Autocad-e klikne sem

Re: prosim o kontrolu

Napsal: 10 srp 2011 14:41
od chodnik74
:arrow: Service pack 1

Odkaz č.1

Odkaz č.2


Teploty:
celkem vysoké :roll: Takže doporučuji rozdělat pc a opatrně vyfoukat vzduchem a opatrně povysávat,ale držte lopatky ventilátorů,aby nedošlo k poškození :)

Re: prosim o kontrolu

Napsal: 10 srp 2011 18:52
od pedro85
nazdar

dnes rano, sa mi na win update, objavila aktulaizaci ana SP1 a dopadlo to ako som ocakaval .. teda neuspesne
taktiez nesiel ani na priamo

tu instalacku som stiahul uz vcera ... totozne s tym odkazaom cislo 1
odakaz c.2 je na 32 bit verziu ( aspon to mi vypisal, po staihnuty)
-------------------
cca pred hodinou, som chcel sem hodit info, co a ako, a este som sa rozhodol ze porobim prtSc-mi, a ten SP ako natruc sa rozbehol :shock: ten isty, co nesiel vcera a ani dnes naobed :roll:

ale hlavne ze uz je

inak diki za pomoc a ochotu :thumbsup:

Re: prosim o kontrolu

Napsal: 10 srp 2011 20:13
od chodnik74
Poprosím na kontrolu: RSIT + screen teplot po vyčištění od prachu :)

Re: prosim o kontrolu

Napsal: 10 srp 2011 21:02
od pedro85
len tak pre objektivnot tych teplot ... ja zvacsa mam zapnuty vykon na maximum, co aj z casti ovlivnilo tu teplotu
trebaz, ked prepnem na vyvazeny, tak tie teploty tochu klesnu >> klik <<

dnes uz ho rozoberat. nebudem, to az zajtra, tak potom ti tu hodim este tie teploty po vycisteni :)

log z RSIT

Kód: Vybrat vše


Logfile of random's system information tool 1.09 (written by random/random)
Run by Pedro85 at 2011-08-10 21:54:25
Microsoft Windows 7 Home Premium  Service Pack 1
System drive C: has 33 GB (33%) free of 100 GB
Total RAM: 4026 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:54:27, on 10. 8. 2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\Pedro85.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://homepage.acer.com/rdr.aspx?b=ACAW&l=041b&m=aspire_5935&r=273605102645l0314z105t58i2x37q
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: Acer VCM.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O8 - Extra context menu item: Previesť cieľ odkazu do formátu Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Previesť do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Pridať cieľ odkazu do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Pridať do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - (no file)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10420 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
WLIDSvcM.exe 1384
"c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5405ced1-1467-48f7-9fa1-d553ff5afba1 -SystemEventPortName:HostProcess-ee0f9389-fb4f-4f5d-8528-1611836b3e47 -IoCancelEventPortName:HostProcess-a6367fb1-424d-484d-a756-229ea8237176 -NonStateChangingEventPortName:HostProcess-ab186a38-61e3-4694-a9ae-5c110f144c77 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:cb075ac5-b30d-472d-8d1f-f1a52ff4ee22
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe" 
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" 
"C:\Windows\PLFSetI.exe" 
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe" 
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe" 
"C:\Program Files (x86)\Launch Manager\LManager.exe" 
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Acer\Acer PowerSmart Manager\ePowerEvent.exe"
"C:\Windows\system32\wuauclt.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\Opera\opera.exe" 
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\programy\ochrana\RSITx64.exe" 
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2171934221-1264263934-1850883141-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2171934221-1264263934-1850883141-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-08-08 75656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2011-05-13 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-07-11 3821568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-09-04 8098848]
"mwlDaemon"=C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [2009-08-06 349480]
"Acer ePower Management"=C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [2009-08-19 496160]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-08-26 387608]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-08-19 16336416]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-06-18 1808168]
"PLFSetI"=C:\Windows\PLFSetI.exe [2008-07-30 200704]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 1436736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-08-18 1157128]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-08-26 258560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-10 249344]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll

======File associations======

.inf - open - %SystemRoot%\SysWow64\NOTEPAD.EXE %1
.inf - install - %SystemRoot%\SysWow64\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\WScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\WScript.exe "%1" %*
.cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%*

======List of files/folders created in the last 1 month======

2011-08-10 19:31:04 ----D---- C:\Windows\system32\SPReview
2011-08-10 18:52:30 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2011-08-10 18:52:30 ----A---- C:\Windows\system32\mprddm.dll
2011-08-10 18:52:30 ----A---- C:\Windows\system32\mobsync.exe
2011-08-10 18:52:29 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2011-08-10 18:52:29 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2011-08-10 18:52:28 ----A---- C:\Windows\SYSWOW64\mstask.dll
2011-08-10 18:52:28 ----A---- C:\Windows\SYSWOW64\mscories.dll
2011-08-10 18:52:28 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2011-08-10 18:52:28 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2011-08-10 18:52:28 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2011-08-10 18:52:28 ----A---- C:\Windows\system32\msdri.dll
2011-08-10 18:52:28 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-08-10 18:52:28 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-08-10 18:52:27 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2011-08-10 18:52:27 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2011-08-10 18:52:27 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2011-08-10 18:52:27 ----A---- C:\Windows\system32\itircl.dll
2011-08-10 18:52:27 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-08-10 18:52:27 ----A---- C:\Windows\system32\inetmib1.dll
2011-08-10 18:52:27 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-08-10 18:52:26 ----A---- C:\Windows\SYSWOW64\raschap.dll
2011-08-10 18:52:26 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2011-08-10 18:52:26 ----A---- C:\Windows\SYSWOW64\qedit.dll
2011-08-10 18:52:26 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2011-08-10 18:52:26 ----A---- C:\Windows\SYSWOW64\propsys.dll
2011-08-10 18:52:26 ----A---- C:\Windows\SYSWOW64\logagent.exe
2011-08-10 18:52:26 ----A---- C:\Windows\system32\printui.dll
2011-08-10 18:52:26 ----A---- C:\Windows\system32\pnidui.dll
2011-08-10 18:52:26 ----A---- C:\Windows\system32\pifmgr.dll
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\samcli.dll
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2011-08-10 18:52:24 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\sdcpl.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\Ribbons.scr
2011-08-10 18:52:24 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\ntdll.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\nslookup.exe
2011-08-10 18:52:24 ----A---- C:\Windows\system32\nlasvc.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\nlaapi.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\netshell.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\netlogon.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\netjoin.dll
2011-08-10 18:52:24 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2011-08-10 18:52:23 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2011-08-10 18:52:23 ----A---- C:\Windows\system32\OobeFldr.dll
2011-08-10 18:52:23 ----A---- C:\Windows\system32\odbctrac.dll
2011-08-10 18:52:23 ----A---- C:\Windows\system32\ncsi.dll
2011-08-10 18:52:23 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-08-10 18:52:23 ----A---- C:\Windows\system32\msxml6.dll
2011-08-10 18:52:22 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2011-08-10 18:52:22 ----A---- C:\Windows\SYSWOW64\cmd.exe
2011-08-10 18:52:22 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2011-08-10 18:52:22 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2011-08-10 18:52:22 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-08-10 18:52:22 ----A---- C:\Windows\system32\d3d10level9.dll
2011-08-10 18:52:22 ----A---- C:\Windows\system32\CertPolEng.dll
2011-08-10 18:52:22 ----A---- C:\Windows\system32\certmgr.dll
2011-08-10 18:52:22 ----A---- C:\Windows\system32\certcli.dll
2011-08-10 18:52:22 ----A---- C:\Windows\system32\cdd.dll
2011-08-10 18:52:21 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2011-08-10 18:52:21 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2011-08-10 18:52:21 ----A---- C:\Windows\system32\diagperf.dll
2011-08-10 18:52:21 ----A---- C:\Windows\system32\dbghelp.dll
2011-08-10 18:52:21 ----A---- C:\Windows\system32\dbgeng.dll
2011-08-10 18:52:21 ----A---- C:\Windows\system32\d3d9.dll
2011-08-10 18:52:21 ----A---- C:\Windows\system32\comdlg32.dll
2011-08-10 18:52:20 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2011-08-10 18:52:20 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2011-08-10 18:52:20 ----A---- C:\Windows\SYSWOW64\authui.dll
2011-08-10 18:52:20 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2011-08-10 18:52:20 ----A---- C:\Windows\SYSWOW64\activeds.dll
2011-08-10 18:52:20 ----A---- C:\Windows\system32\consent.exe
2011-08-10 18:52:20 ----A---- C:\Windows\system32\bcdsrv.dll
2011-08-10 18:52:20 ----A---- C:\Windows\system32\bcdedit.exe
2011-08-10 18:52:20 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-08-10 18:52:20 ----A---- C:\Windows\system32\authui.dll
2011-08-10 18:52:20 ----A---- C:\Windows\system32\aepdu.dll
2011-08-10 18:52:20 ----A---- C:\Windows\system32\aeinv.dll
2011-08-10 18:52:20 ----A---- C:\Windows\system32\acppage.dll
2011-08-10 18:52:19 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2011-08-10 18:52:19 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2011-08-10 18:52:19 ----A---- C:\Windows\system32\ftp.exe
2011-08-10 18:52:19 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-08-10 18:52:19 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-08-10 18:52:19 ----A---- C:\Windows\system32\drivers\appid.sys
2011-08-10 18:52:19 ----A---- C:\Windows\system32\appinfo.dll
2011-08-10 18:52:18 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2011-08-10 18:52:18 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2011-08-10 18:52:18 ----A---- C:\Windows\system32\imapi2fs.dll
2011-08-10 18:52:18 ----A---- C:\Windows\system32\elsTrans.dll
2011-08-10 18:52:18 ----A---- C:\Windows\system32\drivers\http.sys
2011-08-10 18:52:18 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2011-08-10 18:52:18 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-08-10 18:52:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-08-10 18:52:17 ----A---- C:\Windows\SYSWOW64\evr.dll
2011-08-10 18:52:17 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2011-08-10 18:52:17 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2011-08-10 18:52:17 ----A---- C:\Windows\system32\Display.dll
2011-08-10 18:52:16 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2011-08-10 18:52:16 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2011-08-10 18:52:16 ----A---- C:\Windows\system32\SearchFolder.dll
2011-08-10 18:52:16 ----A---- C:\Windows\system32\Faultrep.dll
2011-08-10 18:52:16 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-08-10 18:52:15 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2011-08-10 18:52:15 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2011-08-10 18:52:15 ----A---- C:\Windows\system32\thumbcache.dll
2011-08-10 18:52:15 ----A---- C:\Windows\system32\taskschd.dll
2011-08-10 18:52:15 ----A---- C:\Windows\system32\tabcal.exe
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\spp.dll
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2011-08-10 18:52:14 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2011-08-10 18:52:14 ----A---- C:\Windows\system32\sysmain.dll
2011-08-10 18:52:14 ----A---- C:\Windows\system32\sysclass.dll
2011-08-10 18:52:14 ----A---- C:\Windows\system32\sppsvc.exe
2011-08-10 18:52:14 ----A---- C:\Windows\system32\spp.dll
2011-08-10 18:52:14 ----A---- C:\Windows\system32\shwebsvc.dll
2011-08-10 18:52:14 ----A---- C:\Windows\system32\shell32.dll
2011-08-10 18:52:13 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-08-10 18:52:13 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-08-10 18:52:13 ----A---- C:\Windows\system32\srchadmin.dll
2011-08-10 18:52:13 ----A---- C:\Windows\system32\sqmapi.dll
2011-08-10 18:52:12 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2011-08-10 18:52:12 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2011-08-10 18:52:12 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2011-08-10 18:52:12 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2011-08-10 18:52:12 ----A---- C:\Windows\system32\wucltux.dll
2011-08-10 18:52:12 ----A---- C:\Windows\system32\wsqmcons.exe
2011-08-10 18:52:12 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-08-10 18:52:12 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-08-10 18:52:12 ----A---- C:\Windows\system32\wmpeffects.dll
2011-08-10 18:52:12 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-08-10 18:52:12 ----A---- C:\Windows\system32\wkssvc.dll
2011-08-10 18:52:12 ----A---- C:\Windows\system32\winhttp.dll
2011-08-10 18:52:12 ----A---- C:\Windows\system32\drivers\winusb.sys
2011-08-10 18:52:11 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2011-08-10 18:52:11 ----A---- C:\Windows\SYSWOW64\wvc.dll
2011-08-10 18:52:11 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2011-08-10 18:52:11 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2011-08-10 18:52:11 ----A---- C:\Windows\system32\wwanconn.dll
2011-08-10 18:52:11 ----A---- C:\Windows\system32\wsdchngr.dll
2011-08-10 18:52:11 ----A---- C:\Windows\system32\ws2_32.dll
2011-08-10 18:52:11 ----A---- C:\Windows\system32\wpdwcn.dll
2011-08-10 18:52:11 ----A---- C:\Windows\system32\wpd_ci.dll
2011-08-10 18:52:11 ----A---- C:\Windows\system32\userinit.exe
2011-08-10 18:52:11 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-08-10 18:52:10 ----A---- C:\Windows\twain_32.dll
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\webio.dll
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\wdc.dll
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\untfs.dll
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2011-08-10 18:52:10 ----A---- C:\Windows\SYSWOW64\shacct.dll
2011-08-10 18:52:10 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-08-10 18:52:10 ----A---- C:\Windows\system32\webio.dll
2011-08-10 18:52:10 ----A---- C:\Windows\system32\VSSVC.exe
2011-08-10 18:52:10 ----A---- C:\Windows\system32\vssapi.dll
2011-08-10 18:52:10 ----A---- C:\Windows\system32\vss_ps.dll
2011-08-10 18:52:10 ----A---- C:\Windows\system32\umb.dll
2011-08-10 18:52:10 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-08-10 18:52:09 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2011-08-10 18:52:09 ----A---- C:\Windows\SYSWOW64\secproc.dll
2011-08-10 18:52:08 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2011-08-10 18:52:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2011-08-10 18:52:08 ----A---- C:\Windows\system32\mimefilt.dll
2011-08-10 18:52:08 ----A---- C:\Windows\system32\mfps.dll
2011-08-10 18:52:08 ----A---- C:\Windows\system32\mfds.dll
2011-08-10 18:52:08 ----A---- C:\Windows\system32\mf.dll
2011-08-10 18:52:08 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-08-10 18:52:07 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2011-08-10 18:52:07 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2011-08-10 18:52:07 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2011-08-10 18:52:07 ----A---- C:\Windows\SYSWOW64\itircl.dll
2011-08-10 18:52:07 ----A---- C:\Windows\system32\mscorier.dll
2011-08-10 18:52:07 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-08-10 18:52:07 ----A---- C:\Windows\system32\MFPlay.dll
2011-08-10 18:52:07 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-08-10 18:52:07 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-08-10 18:52:07 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-08-10 18:52:06 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2011-08-10 18:52:06 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2011-08-10 18:52:06 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2011-08-10 18:52:06 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2011-08-10 18:52:06 ----A---- C:\Windows\SYSWOW64\logman.exe
2011-08-10 18:52:06 ----A---- C:\Windows\system32\OpcServices.dll
2011-08-10 18:52:06 ----A---- C:\Windows\system32\netutils.dll
2011-08-10 18:52:06 ----A---- C:\Windows\system32\mblctr.exe
2011-08-10 18:52:06 ----A---- C:\Windows\system32\luainstall.dll
2011-08-10 18:52:06 ----A---- C:\Windows\system32\LogonUI.exe
2011-08-10 18:52:06 ----A---- C:\Windows\system32\KBDUS.DLL
2011-08-10 18:52:06 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-08-10 18:52:05 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2011-08-10 18:52:05 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2011-08-10 18:52:05 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2011-08-10 18:52:05 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-08-10 18:52:05 ----A---- C:\Windows\system32\ole32.dll
2011-08-10 18:52:04 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2011-08-10 18:52:04 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2011-08-10 18:52:04 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-08-10 18:52:04 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2011-08-10 18:52:04 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\netapi32.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-08-10 18:52:04 ----A---- C:\Windows\system32\muifontsetup.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\msvidc32.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\msrle32.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\mspbda.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\msdrm.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\msdmo.dll
2011-08-10 18:52:04 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-08-10 18:52:04 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-08-10 18:52:03 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2011-08-10 18:52:03 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2011-08-10 18:52:03 ----A---- C:\Windows\SYSWOW64\credui.dll
2011-08-10 18:52:03 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2011-08-10 18:52:03 ----A---- C:\Windows\system32\choice.exe
2011-08-10 18:52:03 ----A---- C:\Windows\system32\dot3cfg.dll
2011-08-10 18:52:03 ----A---- C:\Windows\system32\d3d11.dll
2011-08-10 18:52:03 ----A---- C:\Windows\system32\cryptsvc.dll
2011-08-10 18:52:02 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2011-08-10 18:52:02 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2011-08-10 18:52:02 ----A---- C:\Windows\SYSWOW64\autochk.exe
2011-08-10 18:52:02 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2011-08-10 18:52:02 ----A---- C:\Windows\system32\diskraid.exe
2011-08-10 18:52:02 ----A---- C:\Windows\system32\asycfilt.dll
2011-08-10 18:52:02 ----A---- C:\Windows\system32\apphelp.dll
2011-08-10 18:52:02 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-08-10 18:52:01 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2011-08-10 18:52:01 ----A---- C:\Windows\SYSWOW64\cabview.dll
2011-08-10 18:52:01 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2011-08-10 18:52:01 ----A---- C:\Windows\SYSWOW64\browcli.dll
2011-08-10 18:52:01 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-08-10 18:52:01 ----A---- C:\Windows\system32\cca.dll
2011-08-10 18:52:01 ----A---- C:\Windows\system32\Bubbles.scr
2011-08-10 18:52:00 ----A---- C:\Windows\SYSWOW64\imm32.dll
2011-08-10 18:52:00 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2011-08-10 18:52:00 ----A---- C:\Windows\system32\imapi2.dll
2011-08-10 18:52:00 ----A---- C:\Windows\system32\iasrad.dll
2011-08-10 18:52:00 ----A---- C:\Windows\system32\iasacct.dll
2011-08-10 18:52:00 ----A---- C:\Windows\system32\fveapi.dll
2011-08-10 18:52:00 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-08-10 18:52:00 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-08-10 18:51:59 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2011-08-10 18:51:59 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2011-08-10 18:51:59 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2011-08-10 18:51:59 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2011-08-10 18:51:59 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-08-10 18:51:59 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-08-10 18:51:58 ----A---- C:\Windows\SYSWOW64\themeui.dll
2011-08-10 18:51:58 ----A---- C:\Windows\SYSWOW64\fde.dll
2011-08-10 18:51:58 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2011-08-10 18:51:58 ----A---- C:\Windows\SYSWOW64\efscore.dll
2011-08-10 18:51:58 ----A---- C:\Windows\system32\tsmf.dll
2011-08-10 18:51:58 ----A---- C:\Windows\system32\fontext.dll
2011-08-10 18:51:57 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2011-08-10 18:51:57 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2011-08-10 18:51:57 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2011-08-10 18:51:57 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-08-10 18:51:57 ----A---- C:\Windows\system32\UIRibbon.dll
2011-08-10 18:51:57 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-08-10 18:51:57 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-08-10 18:51:57 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-08-10 18:51:57 ----A---- C:\Windows\system32\TRAPI.dll
2011-08-10 18:51:56 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2011-08-10 18:51:56 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2011-08-10 18:51:56 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2011-08-10 18:51:56 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2011-08-10 18:51:56 ----A---- C:\Windows\system32\termsrv.dll
2011-08-10 18:51:56 ----A---- C:\Windows\system32\taskmgr.exe
2011-08-10 18:51:56 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-08-10 18:51:56 ----A---- C:\Windows\system32\takeown.exe
2011-08-10 18:51:56 ----A---- C:\Windows\system32\t2embed.dll
2011-08-10 18:51:56 ----A---- C:\Windows\system32\syssetup.dll
2011-08-10 18:51:55 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2011-08-10 18:51:55 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2011-08-10 18:51:55 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2011-08-10 18:51:55 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2011-08-10 18:51:55 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2011-08-10 18:51:55 ----A---- C:\Windows\SYSWOW64\winmm.dll
2011-08-10 18:51:55 ----A---- C:\Windows\system32\wvc.dll
2011-08-10 18:51:55 ----A---- C:\Windows\system32\wuwebv.dll
2011-08-10 18:51:55 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-08-10 18:51:55 ----A---- C:\Windows\system32\WinSAT.exe
2011-08-10 18:51:54 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2011-08-10 18:51:54 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\wusa.exe
2011-08-10 18:51:54 ----A---- C:\Windows\system32\wuapp.exe
2011-08-10 18:51:54 ----A---- C:\Windows\system32\wsnmp32.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\wpdshext.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-08-10 18:51:54 ----A---- C:\Windows\system32\usp10.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-08-10 18:51:54 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-08-10 18:51:53 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2011-08-10 18:51:53 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2011-08-10 18:51:53 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2011-08-10 18:51:53 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2011-08-10 18:51:53 ----A---- C:\Windows\SYSWOW64\user32.dll
2011-08-10 18:51:53 ----A---- C:\Windows\system32\win32spl.dll
2011-08-10 18:51:53 ----A---- C:\Windows\system32\wdc.dll
2011-08-10 18:51:53 ----A---- C:\Windows\system32\SyncCenter.dll
2011-08-10 18:51:53 ----A---- C:\Windows\system32\rtutils.dll
2011-08-10 18:51:53 ----A---- C:\Windows\system32\Robocopy.exe
2011-08-10 18:51:53 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-08-10 18:51:53 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2011-08-10 18:51:52 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2011-08-10 18:51:52 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2011-08-10 18:51:52 ----A---- C:\Windows\SYSWOW64\relog.exe
2011-08-10 18:51:52 ----A---- C:\Windows\system32\schedsvc.dll
2011-08-10 18:51:52 ----A---- C:\Windows\system32\scesrv.dll
2011-08-10 18:51:52 ----A---- C:\Windows\system32\scansetting.dll
2011-08-10 18:51:52 ----A---- C:\Windows\system32\runonce.exe
2011-08-10 18:51:52 ----A---- C:\Windows\system32\riched32.dll
2011-08-10 18:51:52 ----A---- C:\Windows\system32\riched20.dll
2011-08-10 18:51:52 ----A---- C:\Windows\system32\regapi.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\rastls.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\quartz.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\qcap.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\pla.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2011-08-10 18:51:51 ----A---- C:\Windows\SYSWOW64\pdh.dll
2011-08-10 18:51:51 ----A---- C:\Windows\system32\rdpdd.dll
2011-08-10 18:51:51 ----A---- C:\Windows\system32\rasmans.dll
2011-08-10 18:51:51 ----A---- C:\Windows\system32\qdv.dll
2011-08-10 18:51:51 ----A---- C:\Windows\system32\perfmon.exe
2011-08-10 18:51:51 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-08-10 18:51:51 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2011-08-10 18:51:50 ----A---- C:\Windows\SYSWOW64\sud.dll
2011-08-10 18:51:50 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2011-08-10 18:51:50 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-08-10 18:51:50 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\srrstr.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\spwizui.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\spreview.exe
2011-08-10 18:51:50 ----A---- C:\Windows\system32\sppwinob.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\sppcomapi.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\spoolsv.exe
2011-08-10 18:51:50 ----A---- C:\Windows\system32\spinstall.exe
2011-08-10 18:51:50 ----A---- C:\Windows\system32\SmiEngine.dll
2011-08-10 18:51:50 ----A---- C:\Windows\system32\slui.exe
2011-08-10 18:51:50 ----A---- C:\Windows\system32\shunimpl.dll
2011-08-10 18:51:50 ----A---- C:\Windows\splwow64.exe
2011-08-10 18:51:49 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2011-08-10 18:51:49 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-08-10 18:51:49 ----A---- C:\Windows\system32\mcbuilder.exe
2011-08-10 18:51:49 ----A---- C:\Windows\system32\manage-bde.exe
2011-08-10 18:51:49 ----A---- C:\Windows\system32\lsasrv.dll
2011-08-10 18:51:49 ----A---- C:\Windows\system32\lpksetup.exe
2011-08-10 18:51:49 ----A---- C:\Windows\system32\logman.exe
2011-08-10 18:51:49 ----A---- C:\Windows\system32\localspl.dll
2011-08-10 18:51:48 ----A---- C:\Windows\SYSWOW64\migisol.dll
2011-08-10 18:51:48 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-08-10 18:51:48 ----A---- C:\Windows\system32\KMSVC.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\system32\KBDSG.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-08-10 18:51:48 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2011-08-10 18:51:48 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-08-10 18:51:48 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2011-08-10 18:51:47 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2011-08-10 18:51:47 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-08-10 18:51:47 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-08-10 18:51:47 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-08-10 18:51:47 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\netshell.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2011-08-10 18:51:46 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2011-08-10 18:51:46 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-08-10 18:51:46 ----A---- C:\Windows\system32\odbc32.dll
2011-08-10 18:51:46 ----A---- C:\Windows\system32\nrpsrv.dll
2011-08-10 18:51:46 ----A---- C:\Windows\system32\nlsbres.dll
2011-08-10 18:51:46 ----A---- C:\Windows\system32\netid.dll
2011-08-10 18:51:46 ----A---- C:\Windows\system32\iTVData.dll
2011-08-10 18:51:46 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-08-10 18:51:44 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2011-08-10 18:51:44 ----A---- C:\Windows\SYSWOW64\ole32.dll
2011-08-10 18:51:44 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2011-08-10 18:51:44 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\mscoree.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\mscms.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\MPSSVC.dll
2011-08-10 18:51:44 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-08-10 18:51:44 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-08-10 18:51:44 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-08-10 18:51:43 ----A---- C:\Windows\SYSWOW64\nci.dll
2011-08-10 18:51:43 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2011-08-10 18:51:43 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2011-08-10 18:51:43 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-08-10 18:51:43 ----A---- C:\Windows\system32\mswsock.dll
2011-08-10 18:51:42 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2011-08-10 18:51:42 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2011-08-10 18:51:42 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2011-08-10 18:51:42 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2011-08-10 18:51:42 ----A---- C:\Windows\SYSWOW64\credssp.dll
2011-08-10 18:51:42 ----A---- C:\Windows\SYSWOW64\calc.exe
2011-08-10 18:51:42 ----A---- C:\Windows\system32\napdsnap.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\Mystify.scr
2011-08-10 18:51:42 ----A---- C:\Windows\system32\msv1_0.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\mstask.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\msscp.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\msnetobj.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\msiexec.exe
2011-08-10 18:51:42 ----A---- C:\Windows\system32\msftedit.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\drivers\cng.sys
2011-08-10 18:51:42 ----A---- C:\Windows\system32\cryptui.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\clusapi.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\CertEnroll.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\cabview.dll
2011-08-10 18:51:42 ----A---- C:\Windows\system32\browseui.dll
2011-08-10 18:51:41 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2011-08-10 18:51:41 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2011-08-10 18:51:41 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-08-10 18:51:41 ----A---- C:\Windows\system32\dhcpcore.dll
2011-08-10 18:51:41 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-08-10 18:51:41 ----A---- C:\Windows\system32\certprop.dll
2011-08-10 18:51:40 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2011-08-10 18:51:40 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2011-08-10 18:51:40 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2011-08-10 18:51:40 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2011-08-10 18:51:40 ----A---- C:\Windows\SYSWOW64\acppage.dll
2011-08-10 18:51:40 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-08-10 18:51:40 ----A---- C:\Windows\system32\BlbEvents.dll
2011-08-10 18:51:40 ----A---- C:\Windows\system32\blackbox.dll
2011-08-10 18:51:40 ----A---- C:\Windows\system32\biocpl.dll
2011-08-10 18:51:40 ----A---- C:\Windows\system32\BFE.DLL
2011-08-10 18:51:40 ----A---- C:\Windows\system32\bcryptprimitives.dll
2011-08-10 18:51:40 ----A---- C:\Windows\system32\basecsp.dll
2011-08-10 18:51:40 ----A---- C:\Windows\system32\AxInstSv.dll
2011-08-10 18:51:40 ----A---- C:\Windows\bfsvc.exe
2011-08-10 18:51:39 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2011-08-10 18:51:39 ----A---- C:\Windows\SYSWOW64\ftp.exe
2011-08-10 18:51:39 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2011-08-10 18:51:39 ----A---- C:\Windows\SYSWOW64\findstr.exe
2011-08-10 18:51:39 ----A---- C:\Windows\system32\hgcpl.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\gdi32.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\FXSUNATD.exe
2011-08-10 18:51:39 ----A---- C:\Windows\system32\FXSSVC.exe
2011-08-10 18:51:39 ----A---- C:\Windows\system32\FXSMON.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\fphc.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\fms.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-08-10 18:51:39 ----A---- C:\Windows\system32\autochk.exe
2011-08-10 18:51:38 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2011-08-10 18:51:38 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2011-08-10 18:51:38 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2011-08-10 18:51:38 ----A---- C:\Windows\SYSWOW64\dpx.dll
2011-08-10 18:51:38 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2011-08-10 18:51:38 ----A---- C:\Windows\system32\hgprint.dll
2011-08-10 18:51:38 ----A---- C:\Windows\system32\DXP.dll
2011-08-10 18:51:38 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-08-10 18:51:38 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-08-10 18:51:38 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-08-10 18:51:38 ----A---- C:\Windows\system32\diskpart.exe
2011-08-10 18:51:37 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2011-08-10 18:51:37 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2011-08-10 18:51:37 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2011-08-10 18:51:37 ----A---- C:\Windows\system32\eudcedit.exe
2011-08-10 18:51:37 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-08-10 18:51:37 ----A---- C:\Windows\system32\dot3ui.dll
2011-08-10 18:51:36 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2011-08-10 18:51:36 ----A---- C:\Windows\SYSWOW64\twext.dll
2011-08-10 18:51:36 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2011-08-10 18:51:36 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2011-08-10 18:51:36 ----A---- C:\Windows\SYSWOW64\takeown.exe
2011-08-10 18:51:36 ----A---- C:\Windows\system32\upnp.dll
2011-08-10 18:51:36 ----A---- C:\Windows\system32\untfs.dll
2011-08-10 18:51:36 ----A---- C:\Windows\system32\tzutil.exe
2011-08-10 18:51:36 ----A---- C:\Windows\system32\twext.dll
2011-08-10 18:51:36 ----A---- C:\Windows\system32\tlscsp.dll
2011-08-10 18:51:36 ----A---- C:\Windows\system32\themecpl.dll
2011-08-10 18:51:36 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-08-10 18:51:36 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-08-10 18:51:36 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-08-10 18:51:36 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-08-10 18:51:36 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-08-10 18:51:35 ----A---- C:\Windows\SYSWOW64\stobject.dll
2011-08-10 18:51:35 ----A---- C:\Windows\system32\sspisrv.dll
2011-08-10 18:51:35 ----A---- C:\Windows\system32\sspicli.dll
2011-08-10 18:51:33 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2011-08-10 18:51:33 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\WMPhoto.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\wlanmsm.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\wlangpui.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\wkscli.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\wintrust.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-08-10 18:51:33 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2011-08-10 18:51:32 ----A---- C:\Windows\SYSWOW64\wusa.exe
2011-08-10 18:51:32 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2011-08-10 18:51:32 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2011-08-10 18:51:32 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2011-08-10 18:51:32 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2011-08-10 18:51:32 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2011-08-10 18:51:32 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\wups.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\wudriver.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\wuapi.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\WsmSvc.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\WSDApi.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\WPDSp.dll
2011-08-10 18:51:32 ----A---- C:\Windows\system32\winlogon.exe
2011-08-10 18:51:32 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\wer.dll
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\webservices.dll
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\Vault.dll
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\userinit.exe
2011-08-10 18:51:31 ----A---- C:\Windows\SYSWOW64\userenv.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\wiadefui.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\wevtsvc.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\werconcpl.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\webservices.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\wcncsvc.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\vdsutil.dll
2011-08-10 18:51:31 ----A---- C:\Windows\system32\vds.exe
2011-08-10 18:51:31 ----A---- C:\Windows\system32\VAN.dll
2011-08-10 18:51:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-08-10 18:51:30 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2011-08-10 18:51:30 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2011-08-10 18:51:30 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2011-08-10 18:51:30 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2011-08-10 18:51:30 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2011-08-10 18:51:30 ----A---- C:\Windows\system32\wavemsp.dll
2011-08-10 18:51:30 ----A---- C:\Windows\system32\schannel.dll
2011-08-10 18:51:30 ----A---- C:\Windows\system32\secur32.dll
2011-08-10 18:51:30 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-08-10 18:51:30 ----A---- C:\Windows\system32\relog.exe
2011-08-10 18:51:30 ----A---- C:\Windows\system32\rastls.dll
2011-08-10 18:51:30 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-08-10 18:51:30 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-08-10 18:51:28 ----A---- C:\Windows\SYSWOW64\scecli.dll
2011-08-10 18:51:28 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2011-08-10 18:51:28 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2011-08-10 18:51:28 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2011-08-10 18:51:28 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2011-08-10 18:51:28 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2011-08-10 18:51:28 ----A---- C:\Windows\system32\scecli.dll
2011-08-10 18:51:28 ----A---- C:\Windows\system32\rstrui.exe
2011-08-10 18:51:28 ----A---- C:\Windows\system32\rpcrt4.dll
2011-08-10 18:51:28 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-08-10 18:51:28 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-08-10 18:51:28 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-08-10 18:51:28 ----A---- C:\Windows\system32\QAGENT.DLL
2011-08-10 18:51:28 ----A---- C:\Windows\system32\proquota.exe
2011-08-10 18:51:28 ----A---- C:\Windows\system32\propsys.dll
2011-08-10 18:51:27 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2011-08-10 18:51:27 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2011-08-10 18:51:27 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2011-08-10 18:51:27 ----A---- C:\Windows\system32\shsvcs.dll
2011-08-10 18:51:27 ----A---- C:\Windows\system32\raschap.dll
2011-08-10 18:51:27 ----A---- C:\Windows\system32\RacEngn.dll
2011-08-10 18:51:27 ----A---- C:\Windows\system32\Query.dll
2011-08-10 18:51:27 ----A---- C:\Windows\system32\qmgr.dll
2011-08-10 18:51:26 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2011-08-10 18:51:26 ----A---- C:\Windows\system32\srcore.dll
2011-08-10 18:51:26 ----A---- C:\Windows\system32\sqlcese30.dll
2011-08-10 18:51:26 ----A---- C:\Windows\system32\sppnp.dll
2011-08-10 18:51:26 ----A---- C:\Windows\system32\spopk.dll
2011-08-10 18:51:25 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2011-08-10 18:51:25 ----A---- C:\Windows\SYSWOW64\mfds.dll
2011-08-10 18:51:25 ----A---- C:\Windows\SYSWOW64\mf.dll
2011-08-10 18:51:25 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2011-08-10 18:51:25 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2011-08-10 18:51:25 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-08-10 18:51:24 ----A---- C:\Windows\system32\logoncli.dll
2011-08-10 18:51:24 ----A---- C:\Windows\system32\KBDSF.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\system32\KBDPO.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\system32\KBDMON.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-08-10 18:51:24 ----A---- C:\Windows\system32\iyuv_32.dll
2011-08-10 18:51:23 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2011-08-10 18:51:23 ----A---- C:\Windows\SYSWOW64\onexui.dll
2011-08-10 18:51:23 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2011-08-10 18:51:23 ----A---- C:\Windows\SYSWOW64\netid.dll
2011-08-10 18:51:23 ----A---- C:\Windows\system32\ntlanman.dll
2011-08-10 18:51:23 ----A---- C:\Windows\system32\netplwiz.dll
2011-08-10 18:51:23 ----A---- C:\Windows\system32\netfxperf.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\onex.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2011-08-10 18:51:22 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2011-08-10 18:51:22 ----A---- C:\Windows\system32\odbcconf.dll
2011-08-10 18:51:22 ----A---- C:\Windows\system32\ocsetup.exe
2011-08-10 18:51:22 ----A---- C:\Windows\system32\ocsetapi.dll
2011-08-10 18:51:22 ----A---- C:\Windows\system32\ntshrui.dll
2011-08-10 18:51:22 ----A---- C:\Windows\system32\msieftp.dll
2011-08-10 18:51:22 ----A---- C:\Windows\system32\msasn1.dll
2011-08-10 18:51:21 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2011-08-10 18:51:21 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2011-08-10 18:51:21 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2011-08-10 18:51:21 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2011-08-10 18:51:21 ----A---- C:\Windows\system32\net1.exe
2011-08-10 18:51:21 ----A---- C:\Windows\system32\ncryptui.dll
2011-08-10 18:51:21 ----A---- C:\Windows\system32\mydocs.dll
2011-08-10 18:51:21 ----A---- C:\Windows\system32\msyuv.dll
2011-08-10 18:51:21 ----A---- C:\Windows\system32\mstsc.exe
2011-08-10 18:51:20 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2011-08-10 18:51:20 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2011-08-10 18:51:20 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-08-10 18:51:20 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2011-08-10 18:51:20 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2011-08-10 18:51:20 ----A---- C:\Windows\SYSWOW64\certcli.dll
2011-08-10 18:51:20 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-08-10 18:51:20 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-08-10 18:51:20 ----A---- C:\Windows\system32\davclnt.dll
2011-08-10 18:51:20 ----A---- C:\Windows\system32\cmstp.exe
2011-08-10 18:51:20 ----A---- C:\Windows\system32\cdosys.dll
2011-08-10 18:51:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2011-08-10 18:51:19 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2011-08-10 18:51:19 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2011-08-10 18:51:19 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-08-10 18:51:19 ----A---- C:\Windows\system32\d3d10warp.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\cabinet.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\browser.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\bcdboot.exe
2011-08-10 18:51:19 ----A---- C:\Windows\system32\autoplay.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\autofmt.exe
2011-08-10 18:51:19 ----A---- C:\Windows\system32\actxprxy.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\ActionQueue.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\ActionCenter.dll
2011-08-10 18:51:19 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-08-10 18:51:18 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2011-08-10 18:51:18 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2011-08-10 18:51:18 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2011-08-10 18:51:18 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2011-08-10 18:51:18 ----A---- C:\Windows\system32\hal.dll
2011-08-10 18:51:18 ----A---- C:\Windows\system32\gpsvc.dll
2011-08-10 18:51:17 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2011-08-10 18:51:17 ----A---- C:\Windows\system32\inetpp.dll
2011-08-10 18:51:17 ----A---- C:\Windows\system32\evr.dll
2011-08-10 18:51:17 ----A---- C:\Windows\system32\dwmredir.dll
2011-08-10 18:51:17 ----A---- C:\Windows\system32\dsauth.dll
2011-08-10 18:51:17 ----A---- C:\Windows\system32\drvstore.dll
2011-08-10 18:51:16 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2011-08-10 18:51:16 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2011-08-10 18:51:16 ----A---- C:\Windows\SYSWOW64\Display.dll
2011-08-10 18:51:16 ----A---- C:\Windows\system32\efscore.dll
2011-08-10 18:51:16 ----A---- C:\Windows\system32\dot3svc.dll
2011-08-10 18:51:16 ----A---- C:\Windows\system32\dot3msm.dll
2011-08-10 18:51:16 ----A---- C:\Windows\system32\dot3api.dll
2011-08-10 18:51:14 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2011-08-10 18:51:14 ----A---- C:\Windows\SYSWOW64\fontext.dll
2011-08-10 18:51:14 ----A---- C:\Windows\system32\syncui.dll
2011-08-10 18:51:14 ----A---- C:\Windows\system32\fde.dll
2011-08-10 18:51:13 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2011-08-10 18:51:13 ----A---- C:\Windows\SYSWOW64\sppc.dll
2011-08-10 18:51:13 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-08-10 18:51:13 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-08-10 18:51:13 ----A---- C:\Windows\system32\SndVol.exe
2011-08-10 18:51:13 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-08-10 18:51:12 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2011-08-10 18:51:12 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2011-08-10 18:51:12 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2011-08-10 18:51:12 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2011-08-10 18:51:12 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2011-08-10 18:51:12 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2011-08-10 18:51:12 ----A---- C:\Windows\system32\srvcli.dll
2011-08-10 18:51:11 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-08-10 18:51:11 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2011-08-10 18:51:11 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2011-08-10 18:51:11 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2011-08-10 18:51:11 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2011-08-10 18:51:11 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2011-08-10 18:51:11 ----A---- C:\Windows\system32\wmpdxm.dll
2011-08-10 18:51:11 ----A---- C:\Windows\system32\WinSCard.dll
2011-08-10 18:51:11 ----A---- C:\Windows\system32\WebClnt.dll
2011-08-10 18:51:11 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-08-10 18:51:11 ----A---- C:\Windows\system32\wbengine.exe
2011-08-10 18:51:10 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2011-08-10 18:51:10 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2011-08-10 18:51:10 ----A---- C:\Windows\system32\wbemcomn.dll
2011-08-10 18:51:10 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-08-10 18:51:10 ----A---- C:\Windows\system32\vpnike.dll
2011-08-10 18:51:10 ----A---- C:\Windows\system32\Vault.dll
2011-08-10 18:51:10 ----A---- C:\Windows\system32\tzres.dll
2011-08-10 18:51:10 ----A---- C:\Windows\system32\tsbyuv.dll
2011-08-10 18:51:09 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2011-08-10 18:51:09 ----A---- C:\Windows\SYSWOW64\utildll.dll
2011-08-10 18:51:09 ----A---- C:\Windows\SYSWOW64\usp10.dll
2011-08-10 18:51:09 ----A---- C:\Windows\SYSWOW64\schannel.dll
2011-08-10 18:51:09 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2011-08-10 18:51:09 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2011-08-10 18:51:09 ----A---- C:\Windows\system32\schedcli.dll
2011-08-10 18:51:09 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-08-10 18:51:09 ----A---- C:\Windows\system32\drivers\sdbus.sys
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\riched32.dll
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\riched20.dll
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\qdv.dll
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\qasf.dll
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\proquota.exe
2011-08-10 18:51:08 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2011-08-10 18:51:08 ----A---- C:\Windows\system32\schtasks.exe
2011-08-10 18:51:08 ----A---- C:\Windows\system32\rpchttp.dll
2011-08-10 18:51:08 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-08-10 18:51:08 ----A---- C:\Windows\system32\rdpcore.dll
2011-08-10 18:51:08 ----A---- C:\Windows\system32\QUTIL.DLL
2011-08-10 18:51:08 ----A---- C:\Windows\system32\quartz.dll
2011-08-10 18:51:08 ----A---- C:\Windows\system32\prncache.dll
2011-08-10 18:51:07 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2011-08-10 18:51:07 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\shlwapi.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\shdocvw.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\shacct.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\setupapi.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\recovery.dll
2011-08-10 18:51:07 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-08-10 18:51:06 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2011-08-10 18:51:06 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2011-08-10 18:51:06 ----A---- C:\Windows\system32\MdSched.exe
2011-08-10 18:51:06 ----A---- C:\Windows\system32\mciqtz32.dll
2011-08-10 18:51:06 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-08-10 18:51:06 ----A---- C:\Windows\system32\lsmproxy.dll
2011-08-10 18:51:05 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2011-08-10 18:51:05 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-08-10 18:51:04 ----A---- C:\Windows\SYSWOW64\input.dll
2011-08-10 18:51:04 ----A---- C:\Windows\system32\imagehlp.dll
2011-08-10 18:51:04 ----A---- C:\Windows\system32\iasrecst.dll
2011-08-10 18:51:04 ----A---- C:\Windows\system32\httpapi.dll
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\localsec.dll
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\system32\netiohlp.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\netcfgx.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\netcenter.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\msxml3.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\ListSvc.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-08-10 18:51:03 ----A---- C:\Windows\system32\isoburn.exe
2011-08-10 18:51:03 ----A---- C:\Windows\system32\iscsium.dll
2011-08-10 18:51:03 ----A---- C:\Windows\system32\iscsicli.exe
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\netutils.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-08-10 18:51:02 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2011-08-10 18:51:02 ----A---- C:\Windows\system32\ntprint.dll
2011-08-10 18:51:02 ----A---- C:\Windows\system32\nltest.exe
2011-08-10 18:51:02 ----A---- C:\Windows\system32\mtxclu.dll
2011-08-10 18:51:02 ----A---- C:\Windows\system32\drivers\msahci.sys
2011-08-10 18:51:01 ----A---- C:\Windows\SYSWOW64\msscp.dll
2011-08-10 18:51:01 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2011-08-10 18:51:01 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2011-08-10 18:51:01 ----A---- C:\Windows\SYSWOW64\msi.dll
2011-08-10 18:51:01 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2011-08-10 18:51:01 ----A---- C:\Windows\system32\msi.dll
2011-08-10 18:51:01 ----A---- C:\Windows\system32\mprapi.dll
2011-08-10 18:51:00 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2011-08-10 18:51:00 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2011-08-10 18:51:00 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2011-08-10 18:51:00 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2011-08-10 18:51:00 ----A---- C:\Windows\system32\msdtctm.dll
2011-08-10 18:51:00 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2011-08-10 18:51:00 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2011-08-10 18:51:00 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2011-08-10 18:51:00 ----A---- C:\Windows\system32\bootres.dll




Re: prosim o kontrolu

Napsal: 10 srp 2011 21:05
od pedro85
trochu nam ten log narastol, takze tu je druha cast

log RSIT cast2:

Kód: Vybrat vše



2011-08-10 18:50:59 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2011-08-10 18:50:59 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2011-08-10 18:50:59 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2011-08-10 18:50:59 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2011-08-10 18:50:59 ----A---- C:\Windows\SYSWOW64\amstream.dll
2011-08-10 18:50:59 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2011-08-10 18:50:59 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-08-10 18:50:59 ----A---- C:\Windows\system32\crypt32.dll
2011-08-10 18:50:59 ----A---- C:\Windows\system32\credui.dll
2011-08-10 18:50:59 ----A---- C:\Windows\system32\cmd.exe
2011-08-10 18:50:59 ----A---- C:\Windows\system32\amstream.dll
2011-08-10 18:50:59 ----A---- C:\Windows\system32\aitagent.exe
2011-08-10 18:50:58 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2011-08-10 18:50:58 ----A---- C:\Windows\system32\bitsperf.dll
2011-08-10 18:50:58 ----A---- C:\Windows\system32\batmeter.dll
2011-08-10 18:50:57 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2011-08-10 18:50:57 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2011-08-10 18:50:57 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2011-08-10 18:50:57 ----A---- C:\Windows\SYSWOW64\azroles.dll
2011-08-10 18:50:57 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2011-08-10 18:50:57 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2011-08-10 18:50:57 ----A---- C:\Windows\system32\fdProxy.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\eapphost.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\eappgnui.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\eapp3hst.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\AzSqlExt.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\azroles.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\autoconv.exe
2011-08-10 18:50:57 ----A---- C:\Windows\system32\audiosrv.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\AudioSes.dll
2011-08-10 18:50:57 ----A---- C:\Windows\system32\audiodg.exe
2011-08-10 18:50:56 ----A---- C:\Windows\SYSWOW64\fphc.dll
2011-08-10 18:50:56 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\hbaapi.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\gameux.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\framedynos.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\framedyn.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\dxmasf.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\dxgi.dll
2011-08-10 18:50:56 ----A---- C:\Windows\system32\dxdiagn.dll
2011-08-10 18:50:55 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2011-08-10 18:50:55 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2011-08-10 18:50:55 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2011-08-10 18:50:55 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2011-08-10 18:50:55 ----A---- C:\Windows\system32\dpx.dll
2011-08-10 18:50:55 ----A---- C:\Windows\system32\djoin.exe
2011-08-10 18:50:55 ----A---- C:\Windows\system32\dfshim.dll
2011-08-10 18:50:54 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2011-08-10 18:50:54 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2011-08-10 18:50:54 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2011-08-10 18:50:54 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2011-08-10 18:50:54 ----A---- C:\Windows\system32\unimdmat.dll
2011-08-10 18:50:54 ----A---- C:\Windows\system32\taskhost.exe
2011-08-10 18:50:54 ----A---- C:\Windows\system32\taskeng.exe
2011-08-10 18:50:54 ----A---- C:\Windows\system32\taskcomp.dll
2011-08-10 18:50:54 ----A---- C:\Windows\system32\TabSvc.dll
2011-08-10 18:50:54 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-10 18:50:54 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2011-08-10 18:50:54 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-08-10 18:50:54 ----A---- C:\Windows\system32\dps.dll
2011-08-10 18:50:53 ----A---- C:\Windows\SYSWOW64\tzres.dll
2011-08-10 18:50:53 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2011-08-10 18:50:53 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2011-08-10 18:50:53 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2011-08-10 18:50:53 ----A---- C:\Windows\SYSWOW64\sxs.dll
2011-08-10 18:50:53 ----A---- C:\Windows\SYSWOW64\sscore.dll
2011-08-10 18:50:53 ----A---- C:\Windows\system32\user32.dll
2011-08-10 18:50:53 ----A---- C:\Windows\system32\ssText3d.scr
2011-08-10 18:50:53 ----A---- C:\Windows\system32\spwmp.dll
2011-08-10 18:50:53 ----A---- C:\Windows\system32\sppobjs.dll
2011-08-10 18:50:52 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2011-08-10 18:50:52 ----A---- C:\Windows\SYSWOW64\syncui.dll
2011-08-10 18:50:52 ----A---- C:\Windows\SYSWOW64\spopk.dll
2011-08-10 18:50:52 ----A---- C:\Windows\system32\sud.dll
2011-08-10 18:50:51 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-08-10 18:50:51 ----A---- C:\Windows\system32\wmp.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2011-08-10 18:50:50 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\xpsservices.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\WUDFx.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\wshbth.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\wmpmde.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\wmploc.DLL
2011-08-10 18:50:50 ----A---- C:\Windows\system32\Wldap32.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\wlanui.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\wlanpref.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\wisptis.exe
2011-08-10 18:50:50 ----A---- C:\Windows\system32\winsta.dll
2011-08-10 18:50:50 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2011-08-10 18:50:49 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2011-08-10 18:50:49 ----A---- C:\Windows\system32\WUDFSvc.dll
2011-08-10 18:50:49 ----A---- C:\Windows\system32\WUDFPlatform.dll
2011-08-10 18:50:49 ----A---- C:\Windows\system32\WUDFHost.exe
2011-08-10 18:50:49 ----A---- C:\Windows\system32\vdsbas.dll
2011-08-10 18:50:49 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2011-08-10 18:50:49 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-08-10 18:50:48 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2011-08-10 18:50:48 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2011-08-10 18:50:48 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2011-08-10 18:50:48 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\WavDest.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\rdpd3d.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\rdpcorekmts.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\rasppp.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2011-08-10 18:50:48 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-08-10 18:50:48 ----A---- C:\Windows\system32\puiobj.dll
2011-08-10 18:50:48 ----A---- C:\Windows\system32\drivers\raspptp.sys
2011-08-10 18:50:47 ----A---- C:\Windows\SYSWOW64\resutils.dll
2011-08-10 18:50:47 ----A---- C:\Windows\SYSWOW64\regapi.dll
2011-08-10 18:50:47 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2011-08-10 18:50:47 ----A---- C:\Windows\system32\remotepg.dll
2011-08-10 18:50:47 ----A---- C:\Windows\system32\ReAgent.dll
2011-08-10 18:50:47 ----A---- C:\Windows\system32\rdpwsx.dll
2011-08-10 18:50:47 ----A---- C:\Windows\system32\qasf.dll
2011-08-10 18:50:47 ----A---- C:\Windows\system32\PkgMgr.exe
2011-08-10 18:50:47 ----A---- C:\Windows\system32\photowiz.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\prncache.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\printui.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\perfts.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2011-08-10 18:50:46 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\setupcl.exe
2011-08-10 18:50:46 ----A---- C:\Windows\system32\SessEnv.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\provsvc.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\prnfldr.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\PresentationHost.exe
2011-08-10 18:50:46 ----A---- C:\Windows\system32\powercpl.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\pla.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\pdh.dll
2011-08-10 18:50:46 ----A---- C:\Windows\system32\drivers\pci.sys
2011-08-10 18:50:46 ----A---- C:\Windows\system32\drivers\pacer.sys
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\shell32.dll
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2011-08-10 18:50:45 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2011-08-10 18:50:45 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2011-08-10 18:50:45 ----A---- C:\Windows\system32\shimgvw.dll
2011-08-10 18:50:45 ----A---- C:\Windows\system32\shgina.dll
2011-08-10 18:50:45 ----A---- C:\Windows\system32\samsrv.dll
2011-08-10 18:50:45 ----A---- C:\Windows\system32\samcli.dll
2011-08-10 18:50:44 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2011-08-10 18:50:44 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2011-08-10 18:50:44 ----A---- C:\Windows\SYSWOW64\runonce.exe
2011-08-10 18:50:44 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2011-08-10 18:50:44 ----A---- C:\Windows\system32\secproc.dll
2011-08-10 18:50:44 ----A---- C:\Windows\system32\scavengeui.dll
2011-08-10 18:50:44 ----A---- C:\Windows\system32\RpcRtRemote.dll
2011-08-10 18:50:44 ----A---- C:\Windows\system32\RMActivate.exe
2011-08-10 18:50:44 ----A---- C:\Windows\system32\drivers\rmcast.sys
2011-08-10 18:50:43 ----A---- C:\Windows\SYSWOW64\shgina.dll
2011-08-10 18:50:43 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2011-08-10 18:50:43 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2011-08-10 18:50:43 ----A---- C:\Windows\SYSWOW64\mscms.dll
2011-08-10 18:50:43 ----A---- C:\Windows\system32\slwga.dll
2011-08-10 18:50:43 ----A---- C:\Windows\system32\sisbkup.dll
2011-08-10 18:50:43 ----A---- C:\Windows\system32\shsetup.dll
2011-08-10 18:50:43 ----A---- C:\Windows\system32\msconfig.exe
2011-08-10 18:50:43 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-08-10 18:50:42 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2011-08-10 18:50:42 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2011-08-10 18:50:42 ----A---- C:\Windows\SYSWOW64\winsta.dll
2011-08-10 18:50:42 ----A---- C:\Windows\SYSWOW64\sethc.exe
2011-08-10 18:50:42 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2011-08-10 18:50:42 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-08-10 18:50:42 ----A---- C:\Windows\system32\wksprt.exe
2011-08-10 18:50:42 ----A---- C:\Windows\system32\sethc.exe
2011-08-10 18:50:41 ----A---- C:\Windows\SYSWOW64\wmp.dll
2011-08-10 18:50:41 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2011-08-10 18:50:41 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2011-08-10 18:50:41 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-08-10 18:50:41 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2011-08-10 18:50:40 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2011-08-10 18:50:40 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2011-08-10 18:50:40 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2011-08-10 18:50:40 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2011-08-10 18:50:40 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2011-08-10 18:50:40 ----A---- C:\Windows\system32\wmpshell.dll
2011-08-10 18:50:40 ----A---- C:\Windows\system32\wmpps.dll
2011-08-10 18:50:40 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-08-10 18:50:40 ----A---- C:\Windows\system32\TSpkg.dll
2011-08-10 18:50:40 ----A---- C:\Windows\system32\tsgqec.dll
2011-08-10 18:50:40 ----A---- C:\Windows\system32\azroleui.dll
2011-08-10 18:50:40 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-08-10 18:50:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2011-08-10 18:50:39 ----A---- C:\Windows\system32\sxs.dll
2011-08-10 18:50:39 ----A---- C:\Windows\system32\stobject.dll
2011-08-10 18:50:39 ----A---- C:\Windows\system32\sscore.dll
2011-08-10 18:50:39 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2011-08-10 18:50:38 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2011-08-10 18:50:38 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2011-08-10 18:50:38 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\tapisrv.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\srvsvc.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\spwizres.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\spwizeng.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\sppc.dll
2011-08-10 18:50:38 ----A---- C:\Windows\system32\spbcd.dll
2011-08-10 18:50:37 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2011-08-10 18:50:37 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2011-08-10 18:50:37 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2011-08-10 18:50:37 ----A---- C:\Windows\system32\themeui.dll
2011-08-10 18:50:37 ----A---- C:\Windows\system32\termmgr.dll
2011-08-10 18:50:37 ----A---- C:\Windows\system32\systemcpl.dll
2011-08-10 18:50:37 ----A---- C:\Windows\system32\drivers\tdi.sys
2011-08-10 18:50:35 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2011-08-10 18:50:35 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2011-08-10 18:50:35 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-08-10 18:50:35 ----A---- C:\Windows\system32\onexui.dll
2011-08-10 18:50:35 ----A---- C:\Windows\system32\onex.dll
2011-08-10 18:50:34 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2011-08-10 18:50:34 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2011-08-10 18:50:34 ----A---- C:\Windows\system32\seclogon.dll
2011-08-10 18:50:34 ----A---- C:\Windows\system32\sdrsvc.dll
2011-08-10 18:50:34 ----A---- C:\Windows\system32\sdengin2.dll
2011-08-10 18:50:34 ----A---- C:\Windows\system32\sdclt.exe
2011-08-10 18:50:34 ----A---- C:\Windows\system32\prntvpt.dll
2011-08-10 18:50:34 ----A---- C:\Windows\system32\nshipsec.dll
2011-08-10 18:50:34 ----A---- C:\Windows\system32\networkexplorer.dll
2011-08-10 18:50:33 ----A---- C:\Windows\system32\repair-bde.exe
2011-08-10 18:50:33 ----A---- C:\Windows\system32\recdisc.exe
2011-08-10 18:50:33 ----A---- C:\Windows\system32\networkmap.dll
2011-08-10 18:50:32 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2011-08-10 18:50:32 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2011-08-10 18:50:32 ----A---- C:\Windows\system32\rpcss.dll
2011-08-10 18:50:32 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-08-10 18:50:32 ----A---- C:\Windows\system32\rdpencom.dll
2011-08-10 18:50:32 ----A---- C:\Windows\system32\rdpcfgex.dll
2011-08-10 18:50:32 ----A---- C:\Windows\system32\profsvc.dll
2011-08-10 18:50:32 ----A---- C:\Windows\system32\profprov.dll
2011-08-10 18:50:32 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2011-08-10 18:50:32 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-08-10 18:50:31 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2011-08-10 18:50:31 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2011-08-10 18:50:31 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2011-08-10 18:50:31 ----A---- C:\Windows\SYSWOW64\Query.dll
2011-08-10 18:50:31 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\wuaueng.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\wscapi.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\wpccpl.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\qedit.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\qdvd.dll
2011-08-10 18:50:31 ----A---- C:\Windows\system32\qcap.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\wups.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\secur32.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\msutb.dll
2011-08-10 18:50:30 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2011-08-10 18:50:30 ----A---- C:\Windows\system32\wups2.dll
2011-08-10 18:50:30 ----A---- C:\Windows\system32\wuauclt.exe
2011-08-10 18:50:30 ----A---- C:\Windows\system32\wshirda.dll
2011-08-10 18:50:30 ----A---- C:\Windows\system32\secproc_isv.dll
2011-08-10 18:50:30 ----A---- C:\Windows\system32\mstscax.dll
2011-08-10 18:50:30 ----A---- C:\Windows\system32\msinfo32.exe
2011-08-10 18:50:30 ----A---- C:\Windows\system32\drivers\msrpc.sys
2011-08-10 18:50:29 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2011-08-10 18:50:29 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2011-08-10 18:50:29 ----A---- C:\Windows\SYSWOW64\net1.exe
2011-08-10 18:50:29 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2011-08-10 18:50:29 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2011-08-10 18:50:29 ----A---- C:\Windows\system32\netdiagfx.dll
2011-08-10 18:50:29 ----A---- C:\Windows\system32\nci.dll
2011-08-10 18:50:29 ----A---- C:\Windows\system32\drivers\netio.sys
2011-08-10 18:50:29 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2011-08-10 18:50:29 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2011-08-10 18:50:29 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-08-10 18:50:28 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2011-08-10 18:50:28 ----A---- C:\Windows\system32\Narrator.exe
2011-08-10 18:50:27 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2011-08-10 18:50:27 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2011-08-10 18:50:27 ----A---- C:\Windows\system32\lsm.exe
2011-08-10 18:50:27 ----A---- C:\Windows\system32\localsec.dll
2011-08-10 18:50:27 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-08-10 18:50:27 ----A---- C:\Windows\system32\drivers\ks.sys
2011-08-10 18:50:27 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2011-08-10 18:50:27 ----A---- C:\Windows\system32\aaclient.dll
2011-08-10 18:50:26 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2011-08-10 18:50:26 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2011-08-10 18:50:26 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2011-08-10 18:50:26 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2011-08-10 18:50:26 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2011-08-10 18:50:26 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2011-08-10 18:50:26 ----A---- C:\Windows\system32\KBDTUQ.DLL
2011-08-10 18:50:26 ----A---- C:\Windows\system32\KBDLT1.DLL
2011-08-10 18:50:25 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2011-08-10 18:50:25 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2011-08-10 18:50:25 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2011-08-10 18:50:25 ----A---- C:\Windows\system32\KBDINTEL.DLL
2011-08-10 18:50:25 ----A---- C:\Windows\system32\KBDINORI.DLL
2011-08-10 18:50:25 ----A---- C:\Windows\system32\KBDBASH.DLL
2011-08-10 18:50:24 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2011-08-10 18:50:24 ----A---- C:\Windows\SYSWOW64\VAN.dll
2011-08-10 18:50:24 ----A---- C:\Windows\system32\wiaservc.dll
2011-08-10 18:50:24 ----A---- C:\Windows\system32\uxlib.dll
2011-08-10 18:50:24 ----A---- C:\Windows\system32\userenv.dll
2011-08-10 18:50:23 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2011-08-10 18:50:23 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2011-08-10 18:50:23 ----A---- C:\Windows\system32\wiavideo.dll
2011-08-10 18:50:23 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-08-10 18:50:23 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-08-10 18:50:23 ----A---- C:\Windows\system32\mcmde.dll
2011-08-10 18:50:22 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2011-08-10 18:50:22 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2011-08-10 18:50:22 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2011-08-10 18:50:22 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2011-08-10 18:50:22 ----A---- C:\Windows\system32\usercpl.dll
2011-08-10 18:50:22 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-08-10 18:50:22 ----A---- C:\Windows\system32\mapistub.dll
2011-08-10 18:50:22 ----A---- C:\Windows\system32\mapi32.dll
2011-08-10 18:50:21 ----A---- C:\Windows\system32\DiagCpl.dll
2011-08-10 18:50:15 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2011-08-10 18:50:15 ----A---- C:\Windows\system32\dskquoui.dll
2011-08-10 18:50:15 ----A---- C:\Windows\system32\dpnaddr.dll
2011-08-10 18:50:15 ----A---- C:\Windows\system32\dfrgui.exe
2011-08-10 18:50:14 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2011-08-10 18:50:14 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2011-08-10 18:50:14 ----A---- C:\Windows\system32\dwmcore.dll
2011-08-10 18:50:14 ----A---- C:\Windows\system32\dsuiext.dll
2011-08-10 18:50:13 ----A---- C:\Windows\SYSWOW64\cca.dll
2011-08-10 18:50:13 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2011-08-10 18:50:13 ----A---- C:\Windows\SYSWOW64\browseui.dll
2011-08-10 18:50:13 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2011-08-10 18:50:13 ----A---- C:\Windows\system32\dnscmmc.dll
2011-08-10 18:50:13 ----A---- C:\Windows\system32\cscapi.dll
2011-08-10 18:50:13 ----A---- C:\Windows\system32\ci.dll
2011-08-10 18:50:13 ----A---- C:\Windows\system32\C_ISCII.DLL
2011-08-10 18:50:13 ----A---- C:\Windows\system32\browcli.dll
2011-08-10 18:50:13 ----A---- C:\Windows\system32\bitsadmin.exe
2011-08-10 18:50:12 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2011-08-10 18:50:12 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2011-08-10 18:50:12 ----A---- C:\Windows\system32\cscdll.dll
2011-08-10 18:50:12 ----A---- C:\Windows\system32\credssp.dll
2011-08-10 18:50:12 ----A---- C:\Windows\system32\comctl32.dll
2011-08-10 18:50:11 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2011-08-10 18:50:11 ----A---- C:\Windows\SYSWOW64\gameux.dll
2011-08-10 18:50:11 ----A---- C:\Windows\SYSWOW64\fms.dll
2011-08-10 18:50:11 ----A---- C:\Windows\system32\FXSTIFF.dll
2011-08-10 18:50:11 ----A---- C:\Windows\system32\FXSAPI.dll
2011-08-10 18:50:11 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2011-08-10 18:50:10 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2011-08-10 18:50:10 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2011-08-10 18:50:10 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2011-08-10 18:50:10 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2011-08-10 18:50:10 ----A---- C:\Windows\system32\zipfldr.dll
2011-08-10 18:50:09 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2011-08-10 18:50:09 ----A---- C:\Windows\system32\ifsutil.dll
2011-08-10 18:50:09 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-08-10 18:50:08 ----A---- C:\Windows\system32\fixmapi.exe
2011-08-10 18:50:08 ----A---- C:\Windows\system32\findstr.exe
2011-08-10 18:50:08 ----A---- C:\Windows\system32\fdeploy.dll
2011-08-10 18:24:54 ----D---- C:\Windows\system32\EventProviders
2011-08-09 22:52:38 ----A---- C:\Windows\system32\FntCache.dll
2011-08-09 22:52:38 ----A---- C:\Windows\system32\DWrite.dll
2011-08-09 22:52:37 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2011-08-09 22:52:37 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2011-08-09 22:52:37 ----A---- C:\Windows\system32\d2d1.dll
2011-08-09 22:45:39 ----A---- C:\Windows\system32\esent.dll
2011-08-09 22:45:39 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-08-09 22:45:38 ----A---- C:\Windows\SYSWOW64\esent.dll
2011-08-09 22:45:38 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-08-09 22:45:38 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-08-09 22:45:38 ----A---- C:\Windows\system32\drivers\amdsata.sys
2011-08-09 22:45:37 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2011-08-09 22:45:37 ----A---- C:\Windows\system32\fsutil.exe
2011-08-09 22:45:37 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-08-09 22:45:37 ----A---- C:\Windows\system32\drivers\storport.sys
2011-08-09 22:45:37 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-08-09 22:45:37 ----A---- C:\Windows\system32\drivers\amdxata.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2011-08-09 22:45:29 ----A---- C:\Windows\system32\drivers\bthport.sys
2011-08-09 22:45:28 ----A---- C:\Windows\system32\fsquirt.exe
2011-08-09 21:53:25 ----D---- C:\ProgramData\Windows Genuine Advantage
2011-08-08 22:03:25 ----A---- C:\Windows\system32\javaws.exe
2011-08-08 22:03:25 ----A---- C:\Windows\system32\javaw.exe
2011-08-08 22:03:25 ----A---- C:\Windows\system32\java.exe
2011-08-08 22:03:25 ----A---- C:\Windows\system32\deployJava1.dll
2011-08-08 22:03:18 ----D---- C:\Program Files\Java
2011-08-08 21:59:33 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2011-08-08 21:55:20 ----D---- C:\Windows\en
2011-08-08 21:52:19 ----D---- C:\Windows\sk
2011-08-08 21:45:49 ----D---- C:\Program Files (x86)\Microsoft
2011-08-08 21:37:40 ----D---- C:\Program Files (x86)\FileHippo.com
2011-08-08 21:15:15 ----D---- C:\Program Files\Defraggler
2011-08-03 10:32:34 ----A---- C:\Windows\AS2 ver4.ini
2011-08-03 10:32:34 ----A---- C:\Windows\AS2 ver4.exe
2011-08-03 10:32:33 ----A---- C:\Windows\AS2 ver4.scr
2011-08-03 10:32:32 ----D---- C:\Windows\AS2 ver4 Uninstaller
2011-08-03 09:44:28 ----SHD---- C:\$RECYCLE.BIN
2011-08-02 20:08:13 ----D---- C:\Windows\temp
2011-08-02 20:03:30 ----D---- C:\ComboFix
2011-08-02 19:21:06 ----D---- C:\tmp
2011-08-02 19:18:43 ----D---- C:\Download
2011-07-29 11:26:33 ----A---- C:\Windows\SYSWOW64\tsccvid.dll
2011-07-29 11:11:31 ----D---- C:\ProgramData\Sony Ericsson
2011-07-29 11:11:31 ----D---- C:\Program Files (x86)\Sony Ericsson
2011-07-27 22:00:58 ----D---- C:\Program Files (x86)\Microsoft Security Client
2011-07-27 22:00:55 ----D---- C:\Program Files\Microsoft Security Client
2011-07-27 21:34:30 ----A---- C:\Windows\zip.exe
2011-07-27 21:34:30 ----A---- C:\Windows\SWSC.exe
2011-07-27 21:34:30 ----A---- C:\Windows\SWREG.exe
2011-07-27 21:34:30 ----A---- C:\Windows\sed.exe
2011-07-27 21:34:30 ----A---- C:\Windows\PEV.exe
2011-07-27 21:34:30 ----A---- C:\Windows\NIRCMD.exe
2011-07-27 21:34:30 ----A---- C:\Windows\MBR.exe
2011-07-27 21:34:30 ----A---- C:\Windows\grep.exe
2011-07-27 21:34:24 ----D---- C:\Windows\ERDNT
2011-07-27 21:34:04 ----D---- C:\Qoobox
2011-07-27 21:05:18 ----D---- C:\rsit
2011-07-27 21:05:18 ----D---- C:\Program Files\trend micro
2011-07-27 20:19:04 ----AD---- C:\Windows\rundll16.exe
2011-07-27 20:19:04 ----AD---- C:\Windows\logo1_.exe
2011-07-27 20:00:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-07-27 20:00:04 ----A---- C:\Windows\system32\mshtmled.dll
2011-07-27 20:00:03 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-07-27 20:00:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\jscript9.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\ieui.dll
2011-07-27 20:00:03 ----A---- C:\Windows\system32\iertutil.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-07-27 20:00:02 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-07-27 20:00:02 ----A---- C:\Windows\system32\urlmon.dll
2011-07-27 20:00:02 ----A---- C:\Windows\system32\jscript.dll
2011-07-27 20:00:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-07-27 19:59:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-07-27 19:59:59 ----A---- C:\Windows\system32\mshtml.dll
2011-07-27 19:59:59 ----A---- C:\Windows\system32\ieframe.dll
2011-07-27 19:54:13 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-07-27 19:54:13 ----A---- C:\Windows\system32\tquery.dll
2011-07-27 19:54:13 ----A---- C:\Windows\system32\mssrch.dll
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\mssph.dll
2011-07-27 19:54:12 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2011-07-27 19:54:12 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-07-27 19:54:12 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-07-27 19:54:12 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-07-27 19:54:12 ----A---- C:\Windows\system32\mssvp.dll
2011-07-27 19:54:12 ----A---- C:\Windows\system32\mssphtb.dll
2011-07-27 19:54:12 ----A---- C:\Windows\system32\mssph.dll
2011-07-27 19:54:12 ----A---- C:\Windows\system32\msscntrs.dll
2011-07-27 19:54:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-07-27 19:54:09 ----A---- C:\Windows\system32\drivers\afd.sys
2011-07-27 19:54:08 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-07-27 19:53:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-07-27 19:53:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-07-27 19:53:49 ----A---- C:\Windows\system32\kernel32.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\user.exe
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64win.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64cpu.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\wow64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\winsrv.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\ntvdm64.dll
2011-07-27 19:53:48 ----A---- C:\Windows\system32\conhost.exe
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-27 19:53:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-27 19:53:46 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-07-27 19:53:46 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-27 19:53:38 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2011-07-27 19:53:38 ----A---- C:\Windows\SYSWOW64\explorer.exe
2011-07-27 19:53:38 ----A---- C:\Windows\system32\inetcomm.dll
2011-07-27 19:53:38 ----A---- C:\Windows\explorer.exe
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-07-27 19:53:17 ----A---- C:\Windows\system32\drivers\srv.sys
2011-07-27 19:53:16 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2011-07-27 19:53:16 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2011-07-27 19:53:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-07-27 19:53:16 ----A---- C:\Windows\system32\win32k.sys
2011-07-27 19:53:16 ----A---- C:\Windows\system32\oleaut32.dll
2011-07-27 19:53:15 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2011-07-27 19:53:15 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2011-07-27 19:53:15 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-07-27 19:53:15 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-07-27 19:53:15 ----A---- C:\Windows\system32\d3d10_1.dll
2011-07-27 19:52:57 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\devobj.dll
2011-07-27 19:52:56 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2011-07-27 19:52:56 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-07-27 19:52:01 ----A---- C:\Windows\system32\poqexec.exe
2011-07-27 19:52:00 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2011-07-27 19:50:36 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2011-07-27 19:50:36 ----A---- C:\Windows\system32\XpsPrint.dll
2011-07-27 19:11:40 ----RASH---- C:\Windows\SYSWOW64\mscat32V.dll
2011-07-27 16:07:31 ----D---- C:\ProgramData\YouTube Downloader
2011-07-27 16:07:27 ----D---- C:\Program Files (x86)\YouTube Downloader
2011-07-21 10:33:47 ----AD---- C:\Windows\VDLL.DLL
2011-07-21 10:33:47 ----AD---- C:\Windows\SYSWOW64\runouce.exe
2011-07-21 10:33:47 ----AD---- C:\Windows\RUNDL132.EXE
2011-07-21 10:33:47 ----AD---- C:\Windows\logo_1.exe
2011-07-21 10:25:34 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2011-07-21 10:25:33 ----A---- C:\Windows\SYSWOW64\msvcp80.dll
2011-07-21 10:25:32 ----A---- C:\Windows\SYSWOW64\eEmpty.exe
2011-07-21 10:25:25 ----D---- C:\ProgramData\MicroWorld
2011-07-21 09:58:29 ----D---- C:\ProgramData\Norton
2011-07-21 09:41:20 ----D---- C:\Program Files\CCleaner

======List of files/folders modified in the last 1 month======

2011-08-10 21:36:49 ----D---- C:\Program Files (x86)\Counter-Strike 1.6 V40
2011-08-10 21:33:32 ----SHD---- C:\Windows\Installer
2011-08-10 21:30:27 ----D---- C:\Windows\System32
2011-08-10 21:30:27 ----D---- C:\Windows\inf
2011-08-10 21:30:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-08-10 19:52:50 ----D---- C:\Windows\system32\config
2011-08-10 19:49:29 ----RSD---- C:\Windows\assembly
2011-08-10 19:49:29 ----D---- C:\Windows\Microsoft.NET
2011-08-10 19:40:53 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-08-10 19:39:29 ----D---- C:\Windows\winsxs
2011-08-10 19:38:52 ----D---- C:\Windows
2011-08-10 19:38:39 ----D---- C:\Windows\Prefetch
2011-08-10 19:38:10 ----D---- C:\Windows\system32\DriverStore
2011-08-10 19:33:31 ----D---- C:\Program Files (x86)\Windows Sidebar
2011-08-10 19:33:31 ----D---- C:\Program Files (x86)\Windows Portable Devices
2011-08-10 19:33:31 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2011-08-10 19:33:31 ----D---- C:\Program Files (x86)\Windows Media Player
2011-08-10 19:33:31 ----D---- C:\Program Files (x86)\Windows Mail
2011-08-10 19:33:30 ----D---- C:\Program Files\Windows Sidebar
2011-08-10 19:33:30 ----D---- C:\Program Files\Windows Portable Devices
2011-08-10 19:33:30 ----D---- C:\Program Files\Windows Media Player
2011-08-10 19:33:30 ----D---- C:\Program Files\Windows Mail
2011-08-10 19:33:30 ----D---- C:\Program Files\DVD Maker
2011-08-10 19:33:29 ----D---- C:\Program Files\Windows Photo Viewer
2011-08-10 19:33:29 ----D---- C:\Program Files\Windows Journal
2011-08-10 19:33:28 ----D---- C:\Windows\servicing
2011-08-10 19:33:28 ----D---- C:\Windows\ehome
2011-08-10 19:33:28 ----D---- C:\Program Files\Windows Defender
2011-08-10 19:33:23 ----D---- C:\Windows\SYSWOW64\sk-SK
2011-08-10 19:33:23 ----D---- C:\Windows\SYSWOW64\da-DK
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\Setup
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\oobe
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\migration
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\manifeststore
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\es-ES
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\en-US
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\en
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\cs-CZ
2011-08-10 19:33:22 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2011-08-10 19:33:21 ----D---- C:\Windows\SYSWOW64\wbem
2011-08-10 19:33:21 ----D---- C:\Windows\SYSWOW64\sppui
2011-08-10 19:33:21 ----D---- C:\Windows\SYSWOW64\migwiz
2011-08-10 19:33:21 ----D---- C:\Windows\SYSWOW64\Dism
2011-08-10 19:33:21 ----D---- C:\Windows\SysWOW64
2011-08-10 19:33:12 ----D---- C:\Windows\system32\sk-SK
2011-08-10 19:33:12 ----D---- C:\Windows\system32\oobe
2011-08-10 19:33:12 ----D---- C:\Windows\system32\en-US
2011-08-10 19:33:12 ----D---- C:\Windows\system32\da-DK
2011-08-10 19:33:11 ----D---- C:\Windows\system32\sppui
2011-08-10 19:33:11 ----D---- C:\Windows\system32\Setup
2011-08-10 19:33:11 ----D---- C:\Windows\system32\migration
2011-08-10 19:33:11 ----D---- C:\Windows\system32\manifeststore
2011-08-10 19:33:11 ----D---- C:\Windows\system32\es-ES
2011-08-10 19:33:11 ----D---- C:\Windows\system32\drivers\en-US
2011-08-10 19:33:11 ----D---- C:\Windows\system32\cs-CZ
2011-08-10 19:33:11 ----D---- C:\Windows\system32\AdvancedInstallers
2011-08-10 19:33:10 ----D---- C:\Windows\system32\wbem
2011-08-10 19:33:10 ----D---- C:\Windows\system32\drivers
2011-08-10 19:33:09 ----D---- C:\Windows\system32\migwiz
2011-08-10 19:33:09 ----D---- C:\Windows\system32\Dism
2011-08-10 19:33:03 ----RSD---- C:\Windows\Fonts
2011-08-10 19:33:03 ----D---- C:\Windows\AppPatch
2011-08-10 19:32:56 ----D---- C:\Windows\system32\Boot
2011-08-10 19:23:00 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2011-08-10 19:23:00 ----A---- C:\Windows\system32\msclmd.dll
2011-08-10 19:16:00 ----D---- C:\Windows\system32\catroot2
2011-08-10 19:16:00 ----D---- C:\Windows\system32\catroot
2011-08-10 18:22:18 ----D---- C:\ProgramData\Microsoft Help
2011-08-10 18:19:35 ----D---- C:\Windows\debug
2011-08-10 18:19:33 ----A---- C:\Windows\system32\MRT.exe
2011-08-10 17:19:09 ----D---- C:\Users\Pedro85\AppData\Roaming\DAEMON Tools Lite
2011-08-10 17:09:04 ----D---- C:\Windows\SYSWOW64\config
2011-08-09 22:52:59 ----D---- C:\Program Files (x86)\Microsoft Office
2011-08-09 21:53:25 ----D---- C:\ProgramData
2011-08-09 21:42:57 ----SD---- C:\ProgramData\Microsoft
2011-08-08 22:57:51 ----D---- C:\Users\Pedro85\AppData\Roaming\Skype
2011-08-08 22:05:05 ----RD---- C:\Program Files (x86)
2011-08-08 22:03:18 ----RD---- C:\Program Files
2011-08-08 22:02:11 ----D---- C:\Windows\system32\Tasks
2011-08-08 22:02:10 ----RD---- C:\Program Files (x86)\Skype
2011-08-08 22:02:06 ----D---- C:\ProgramData\Skype
2011-08-08 22:02:04 ----D---- C:\Program Files (x86)\Common Files
2011-08-08 21:59:46 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2011-08-08 21:58:42 ----D---- C:\Users\Pedro85\AppData\Roaming\uTorrent
2011-08-08 21:58:25 ----D---- C:\Program Files (x86)\uTorrent
2011-08-08 21:47:03 ----D---- C:\Program Files (x86)\Windows Live
2011-08-08 21:46:43 ----D---- C:\Program Files\Windows Live
2011-08-08 21:46:37 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-08-08 21:45:01 ----D---- C:\Windows\Logs
2011-08-08 21:07:12 ----D---- C:\Users\Pedro85\AppData\Roaming\Winamp
2011-08-08 20:59:58 ----D---- C:\Windows\Tasks
2011-08-08 20:43:52 ----D---- C:\Users\Pedro85\AppData\Roaming\Mozilla
2011-08-04 17:27:54 ----D---- C:\Users\Pedro85\AppData\Roaming\vlc
2011-08-04 17:17:45 ----D---- C:\Users\Pedro85\AppData\Roaming\skypePM
2011-08-04 14:54:56 ----D---- C:\Program Files\bwinPoker
2011-08-03 00:08:06 ----D---- C:\Users\Pedro85\AppData\Roaming\gtk-2.0
2011-08-02 20:08:18 ----A---- C:\Windows\system.ini
2011-08-02 20:06:08 ----D---- C:\Windows\SYSWOW64\drivers
2011-08-02 20:06:06 ----D---- C:\Program Files\Common Files
2011-08-02 19:51:41 ----D---- C:\Windows\system32\drivers\etc
2011-08-02 14:16:59 ----D---- C:\Program Files (x86)\ABBYY FineReader 10
2011-07-29 16:42:56 ----D---- C:\Program Files\FreeRapid-0.85-build555
2011-07-29 11:11:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-07-27 22:00:59 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2011-07-27 22:00:37 ----SD---- C:\Users\Pedro85\AppData\Roaming\Microsoft
2011-07-27 20:12:41 ----A---- C:\Windows\win.ini
2011-07-27 20:08:41 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-07-27 20:07:19 ----D---- C:\Program Files\Internet Explorer
2011-07-27 20:07:19 ----D---- C:\Program Files (x86)\Internet Explorer
2011-07-27 20:02:30 ----HD---- C:\Windows\system32\GroupPolicy
2011-07-20 13:12:26 ----D---- C:\CENKROSplusData
2011-07-19 21:57:00 ----D---- C:\Windows\system32\NDF
2011-07-13 13:18:26 ----D---- C:\ProgramData\Skype Extras

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-05 408600]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-08-08 526392]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 189440]
R1 mwlPSDFilter;mwlPSDFilter; C:\Windows\system32\DRIVERS\mwlPSDFilter.sys [2009-06-02 22576]
R1 mwlPSDNServ;mwlPSDNServ; C:\Windows\system32\DRIVERS\mwlPSDNServ.sys [2009-06-02 20016]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys [2009-06-02 60464]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 DKbFltr;Dritek Keyboard Filter Driver (64-bit); C:\Windows\SysWOW64\Drivers\DKbFltr.sys [2009-03-26 25608]
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2009-05-20 70656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-09-04 1995424]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-18 143472]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 84864]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-05 18432]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2009-08-26 83488]
R3 ROCKEYNT;Feitian ROCKEY4 Device Service; C:\Windows\system32\DRIVERS\Rockey4.sys [2010-11-21 36904]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-06-18 272432]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2009-05-05 16896]
S3 aa7yeeof;aa7yeeof; C:\Windows\system32\drivers\aa7yeeof.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2009-07-13 5020672]
S3 AVerAF15;AVerMedia BDA Digital Tuner; C:\Windows\System32\Drivers\AVerAF15.sys [2008-07-04 306688]
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 98344]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 132648]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 21160]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 enecirhid;ENE CIR HID Receiver; C:\Windows\system32\DRIVERS\enecirhid.sys [2009-05-19 14848]
S3 enecirhidma;ENE CIR HIDmini Filter; C:\Windows\system32\DRIVERS\enecirhidma.sys [2008-04-24 6656]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-08-26 7345632]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 40832]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 6952960]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2009-06-24 205472]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;Sony Ericsson USB Device sa0101 Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-18 864032]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [2009-08-19 796192]
R2 Greg_Service;GRegService; C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-08-28 1150496]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 12784]
R2 MWLService;MyWinLocker Service; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [2009-08-06 311592]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-08-19 382496]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2009-07-10 253952]
R2 Updater Service;Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-07-04 240160]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 288272]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-05-18 1436424]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-12-16 651720]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-05-13 1492840]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2011-06-29 155344]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-27 1255736]
S4 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-01 136176]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-01 136176]
S4 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S4 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
S4 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-06-18 50432]
S4 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-06-18 144640]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------



Re: prosim o kontrolu

Napsal: 11 srp 2011 11:39
od pedro85
teploty po vycisteny

>> klik <<

Re: prosim o kontrolu

Napsal: 11 srp 2011 13:52
od chodnik74
Vše je již v pořádku,i teploty jsou super..

Jen vidím zbytky combofixu,takže..


:arrow: Obrázek OTC
  • Spustíme,zmáčkneme CleanUp a potvrdíme YES :) Program uklidí a následně restartuje
:arrow: ObrázekT-Cleaner
  • Spustíme,zmáčkneme klávesu A a potvrdíme ENTER(některé antiviry mohou detekovat utilitu jako vir-jedá se o falešný poplach,proto IGNOROVAT nebo dočasně vypnout antivir )
  • po použití T-Cleaner smažte ;-)

:arrow: jak se chová PC :???:

Re: prosim o kontrolu

Napsal: 11 srp 2011 14:33
od pedro85
nazdar
pc sa chova celkom dobre, aj ked obcas este zalaguje, ale je to omnoho menej ako predtym (skor sporadicky), a niesu ani tak velke :thumbsup: